CVE-2025-25220
CVSS 3.0 Score 8.8 of 10 (high)
Details
Published Mar 18, 2025
CWE ID 78
Summary
CVE-2025-25220 is a critical OS Command Injection vulnerability affecting +F FS010M versions prior to V2.0.1_1101. This issue occurs due to improper neutralization of special elements used in an OS command. If successfully exploited, a remote authenticated attacker can execute arbitrary OS commands, potentially leading to serious system compromise. This vulnerability poses a significant risk and requires immediate attention and patching.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.