CVE-2025-48978
Severity CVSS v4.0:
Pending analysis
Type:
CWE-77
Command Injection
Publication date:
21/08/2025
Last modified:
22/08/2025
Description
An Improper Input Validation in EdgeMAX EdgeSwitch (Version 1.11.0 and earlier) could allow a Command Injection by a malicious actor with access to EdgeSwitch adjacent network.<br />
<br />
Affected Products:<br />
<br />
EdgeMAX EdgeSwitch (Version 1.11.0 and earlier) <br />
<br />
<br />
<br />
Mitigation:<br />
<br />
Update the EdgeMAX EdgeSwitch to Version 1.11.1 or later.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH



