Логотип exploitDog
bind:CVE-2025-57439
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-57439

Количество 2

Количество 2

nvd логотип

CVE-2025-57439

5 месяцев назад

Creacast Creabox Manager 4.4.4 contains a critical Remote Code Execution vulnerability accessible via the edit.php endpoint. An authenticated attacker can inject arbitrary Lua code into the configuration, which is then executed on the server. This allows full system compromise, including reverse shell execution or arbitrary command execution.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-vhm5-xv2f-rgj2

5 месяцев назад

Creacast Creabox Manager 4.4.4 contains a critical Remote Code Execution vulnerability accessible via the edit.php endpoint. An authenticated attacker can inject arbitrary Lua code into the configuration, which is then executed on the server. This allows full system compromise, including reverse shell execution or arbitrary command execution.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-57439

Creacast Creabox Manager 4.4.4 contains a critical Remote Code Execution vulnerability accessible via the edit.php endpoint. An authenticated attacker can inject arbitrary Lua code into the configuration, which is then executed on the server. This allows full system compromise, including reverse shell execution or arbitrary command execution.

CVSS3: 8.8
0%
Низкий
5 месяцев назад
github логотип
GHSA-vhm5-xv2f-rgj2

Creacast Creabox Manager 4.4.4 contains a critical Remote Code Execution vulnerability accessible via the edit.php endpoint. An authenticated attacker can inject arbitrary Lua code into the configuration, which is then executed on the server. This allows full system compromise, including reverse shell execution or arbitrary command execution.

CVSS3: 8.8
0%
Низкий
5 месяцев назад

Уязвимостей на страницу