CVE-2025-3362

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Apr 8, 2025
CWE ID 78

Summary

CVE-2025-3362 is a critical vulnerability affecting the web service of iSherlock from HGiga. This issue permits unauthenticated remote attackers to inject and execute arbitrary OS commands on the server through an OS Command Injection vulnerability. Successful exploitation of this vulnerability could lead to serious consequences, including data theft, server compromise, and unauthorized system access. iSherlock users are strongly advised to apply the recommended patches or updates as soon as possible to mitigate this risk. Failure to do so may result in significant security breaches.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Hgiga Isherlock

Affected Vendors

  • HGiga Huanji Technology Co., Ltd.