CVE-2025-57791
A security vulnerability has been identified that allows remote attackers to inject or manipulate command-line arguments
A security vulnerability has been identified that allows remote attackers to inject or manipulate command-line arguments passed to internal components due to insufficient input validation. Successful exploitation results in a valid user session for a low privilege role.
MEDIUM · CVSS 6.5
EPSS 0.37826
Schedule remediation
- EPSS ≥ 0.10 - elevated exploitation probability
- EPSS percentile: top 3% of all CVEs by exploitation likelihood
- SSVC automatable: yes - attacks can be scripted at scale
Sigma rules0
YARA rules0