Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-3039 | Unprotected Windows messaging channel ('Shatter') issue exists in Defense Platform Home Edition Ver.3.9.51.x and earlier. If an attacker sends a specially crafted message to the specific process of the Windows system where the product is running, arbitrary files in the system may be altered. As a result, an arbitrary DLL may be executed with SYSTEM privilege. |
Wed, 04 Feb 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hummingheads
Hummingheads defense Platform |
|
| CPEs | cpe:2.3:a:hummingheads:defense_platform:*:*:*:*:home:*:*:* | |
| Vendors & Products |
Hummingheads
Hummingheads defense Platform |
|
| Metrics |
cvssV3_1
|
Wed, 12 Feb 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 06 Feb 2025 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unprotected Windows messaging channel ('Shatter') issue exists in Defense Platform Home Edition Ver.3.9.51.x and earlier. If an attacker sends a specially crafted message to the specific process of the Windows system where the product is running, arbitrary files in the system may be altered. As a result, an arbitrary DLL may be executed with SYSTEM privilege. | |
| Weaknesses | CWE-422 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-02-12T19:41:05.151Z
Reserved: 2025-01-27T06:02:35.087Z
Link: CVE-2025-22894
Updated: 2025-02-12T19:39:09.619Z
Status : Analyzed
Published: 2025-02-06T08:15:30.027
Modified: 2026-02-04T20:21:58.473
Link: CVE-2025-22894
No data.
OpenCVE Enrichment
No data.
EUVD