CVE-2025-1369

CVSS 2.0 Score 3.5 of 10 (low)

Details

Published Feb 17, 2025
Updated: Feb 18, 2025
CWE ID 78
CWE ID 77

Summary

CVE-2025-1369 is a critical vulnerability identified in MicroWorld eScan Antivirus 7.0.32 on Linux. This issue affects an unidentified functionality within the USB Password Handler component, enabling attackers to execute OS commands through manipulation. The exploitation of this vulnerability requires local access and is considered difficult, as detailed information about the attack methodology has been made public. Despite early disclosure to the vendor, they have yet to provide a response or patches to address this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • eScan

Affected Vendors

  • MicroWorld Technologies, Inc.