A malicious user with administrative privileges in the web portal would be able to manipulate the Diagnostics module to obtain remote code execution on the local device as a low privileged user.
References
Link | Resource |
---|---|
https://jct-aq.com/products/airpointer2d/ |
Configurations
No configuration.
History
30 May 2025, 16:31
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
30 May 2025, 09:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-30 09:15
Updated : 2025-05-30 16:31
NVD link : CVE-2025-4635
Mitre link : CVE-2025-4635
CVE.ORG link : CVE-2025-4635
JSON object : View
Products Affected
No product.
CWE
CWE-20
Improper Input Validation