CVE-2025-3621

Severity CVSS v4.0:
CRITICAL
Type:
CWE-77 Command Injection
Publication date:
15/07/2025
Last modified:
15/07/2025

Description

Vulnerabilities* in ActADUR local server product, developed and maintained by ProTNS, allows Remote Code Inclusion on host systems. <br /> <br /> <br /> * vulnerabilities:<br /> * <br /> <br /> Improper Neutralization of Special Elements used in a Command (&amp;#39;Command Injection&amp;#39;)<br /> * Use of Hard-coded Credentials<br /> * Improper Authentication<br /> * Binding to an Unrestricted IP Address<br /> <br /> <br /> <br /> The vulnerability has been rated as critical.This issue affects ActADUR: from v2.0.1.9 before v2.0.2.0., hence updating to version v2.0.2.0. or above is required.

References to Advisories, Solutions, and Tools