CVE-2025-53695
Severity CVSS v4.0:
CRITICAL
Type:
CWE-78
OS Command Injections
Publication date:
28/07/2025
Last modified:
29/07/2025
Description
OS Command Injection in iSTAR Ultra products web application allows an authenticated attacker to gain even more privileged access ('root' user) to the device firmware.
Impact
Base Score 4.0
9.40
Severity 4.0
CRITICAL



