CVE-2025-8748

MiR software versions prior to version 3.0.0 are affected by a command injection vulnerability. A malicious HTTP request crafted by an authenticated user could allow the execution of arbitrary commands on the underlying operating system.
Configurations

No configuration.

History

05 Nov 2025, 13:15

Type Values Removed Values Added
References
  • {'url': 'https://a.storyblok.com/f/230581/x/16eefc00b8/msa-16.pdf', 'source': '1b7e193f-2525-49a1-b171-84af8827c9eb'}
  • () https://mobile-industrial-robots.com/security-advisories/command-injection -
Summary
  • (es) Las versiones del software MiR anteriores a la 3.0.0 se ven afectadas por una vulnerabilidad de inyección de comandos. Una solicitud HTTP maliciosa manipulada por un usuario autenticado podría permitir la ejecución de comandos arbitrarios en el sistema operativo subyacente.

08 Aug 2025, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-08 11:15

Updated : 2025-11-05 13:15


NVD link : CVE-2025-8748

Mitre link : CVE-2025-8748

CVE.ORG link : CVE-2025-8748


JSON object : View

Products Affected

No product.

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')