Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-23818 | CL4/6NX Plus and CL4/6NX-J Plus (Japan model) with the firmware versions prior to 1.15.5-r1 allow crafted dangerous files to be uploaded. An arbitrary Lua script may be executed on the system with the root privilege. |
Thu, 07 Aug 2025 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sato
Sato cl4nx-j Plus Sato cl4nx Plus Sato cl6nx-j Plus Sato cl6nx Plus |
|
| Vendors & Products |
Sato
Sato cl4nx-j Plus Sato cl4nx Plus Sato cl6nx-j Plus Sato cl6nx Plus |
Wed, 06 Aug 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 06 Aug 2025 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CL4/6NX Plus and CL4/6NX-J Plus (Japan model) with the firmware versions prior to 1.15.5-r1 allow crafted dangerous files to be uploaded. An arbitrary Lua script may be executed on the system with the root privilege. | |
| Weaknesses | CWE-434 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-08-06T13:26:42.242Z
Reserved: 2025-01-07T02:31:49.639Z
Link: CVE-2025-22470
Updated: 2025-08-06T13:26:22.909Z
Status : Deferred
Published: 2025-08-06T10:15:35.220
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-22470
No data.
OpenCVE Enrichment
Updated: 2025-08-06T15:12:37Z
EUVD