Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-16371 | An authenticated user can perform command injection via unsanitized input to the NetFax Server’s ping functionality via the /test.php endpoint. |
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 29 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 29 May 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authenticated user can perform command injection via unsanitized input to the NetFax Server’s ping functionality via the /test.php endpoint. | |
| Title | MICI Network Co. Ltd. NetFax Server Command Injection | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: rapid7
Published:
Updated: 2025-05-29T13:15:14.119Z
Reserved: 2025-05-15T13:38:26.770Z
Link: CVE-2025-48047
Updated: 2025-05-29T13:14:58.953Z
Status : Deferred
Published: 2025-05-29T13:15:25.887
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-48047
No data.
OpenCVE Enrichment
No data.
EUVD