← Zuruck zu CVEs
CVE-2025-41362
N/ABeschreibung
Code injection vulnerability in IDF v0.10.0-0C03-03 and ZLF v0.10.0-0C03-04. This vulnerability allows an attacker to store malicious payload in software that will run in the victim's browser. Exploiting this vulnerability requires authenticating to the device and executing certain commands that can be executed with view permission.
CVE Details
CVSS v3.1 BewertungN/A
Veroffentlicht6/6/2025
Zuletzt geandert6/6/2025
Quellenvd
Honeypot-Sichtungen0
Schwachen (CWE)
CWE-94
Referenzen
https://www.incibe.es/en/incibe-cert/notices/aviso-sci/multiple-vulnerabilities-zivs-idf-and-zlf-products(cve-coordination@incibe.es)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.