Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-22070 | A high privileged remote attacker can execute arbitrary system commands via POST requests in the send_sms action due to improper neutralization of special elements used in an OS command. |
Thu, 06 Nov 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mbconnectline
Mbconnectline mbnet.mini Mbconnectline mbnet.mini Firmware |
|
| CPEs | cpe:2.3:h:mbconnectline:mbnet.mini:-:*:*:*:*:*:*:* cpe:2.3:o:mbconnectline:mbnet.mini_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Mbconnectline
Mbconnectline mbnet.mini Mbconnectline mbnet.mini Firmware |
Mon, 03 Nov 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 22 Jul 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Helmholz
Helmholz rex 100 Mb Connect Line Mb Connect Line mbnet.mini |
|
| Vendors & Products |
Helmholz
Helmholz rex 100 Mb Connect Line Mb Connect Line mbnet.mini |
Mon, 21 Jul 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 21 Jul 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A high privileged remote attacker can execute arbitrary system commands via POST requests in the send_sms action due to improper neutralization of special elements used in an OS command. | |
| Title | Remote Command Injection in send_sms Action Due to Improper Input Neutralization | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2025-11-03T19:58:57.413Z
Reserved: 2025-04-16T11:17:48.308Z
Link: CVE-2025-41673
Updated: 2025-11-03T19:58:57.413Z
Status : Analyzed
Published: 2025-07-21T10:15:23.400
Modified: 2025-11-06T16:45:33.930
Link: CVE-2025-41673
No data.
OpenCVE Enrichment
Updated: 2025-07-22T10:01:22Z
EUVD