CVE-2025-1369
CVSS 2.0 Score 3.5 of 10 (low)
Details
Published Feb 17, 2025
Updated: Feb 18, 2025
CWE ID 78
CWE ID 77
Summary
CVE-2025-1369 is a critical vulnerability identified in MicroWorld eScan Antivirus 7.0.32 on Linux. This issue affects an unidentified functionality within the USB Password Handler component, enabling attackers to execute OS commands through manipulation. The exploitation of this vulnerability requires local access and is considered difficult, as detailed information about the attack methodology has been made public. Despite early disclosure to the vendor, they have yet to provide a response or patches to address this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- eScan
Affected Vendors
- MicroWorld Technologies, Inc.