CVE-2025-0457
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2025-0457 is a newly discovered vulnerability affecting the airPASS system from NetVision Information. This issue grants attackers with regular privileges the ability to execute arbitrary OS commands through an OS Command Injection vulnerability. Successful exploitation allows attackers to gain elevated system access and potentially install malware, steal sensitive data, or disrupt system functionality. The vulnerability poses a significant risk to organizations using the affected product and necessitates immediate mitigation efforts. Organizations are strongly advised to apply the patches provided by NetVision Information to secure their systems from potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.