CVE-2025-3362
CVSS 3.1 Score 9.8 of 10 (high)
Details
Summary
CVE-2025-3362 is a critical vulnerability affecting the web service of iSherlock from HGiga. This issue permits unauthenticated remote attackers to inject and execute arbitrary OS commands on the server through an OS Command Injection vulnerability. Successful exploitation of this vulnerability could lead to serious consequences, including data theft, server compromise, and unauthorized system access. iSherlock users are strongly advised to apply the recommended patches or updates as soon as possible to mitigate this risk. Failure to do so may result in significant security breaches.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Hgiga Isherlock
Affected Vendors
- HGiga Huanji Technology Co., Ltd.