CNNVD-202507-3905 Information
Jul 31, 2025
cve
CNNVD ID
CNNVD-202507-3905
Related CVE
- CNNVD Published: 2025-07-31
Description (Chinese)
GestioIP是GestioIP公司的一款基于 Web 的 IPv4/IPv6 地址管理软件。 GestioIP 3.0 commit ac67be及之前版本存在安全漏洞,该漏洞源于ip参数未经验证,可能导致远程命令执行。
Description (English)
Gestiop is a Web-based IPv4/IPv6 address management software for Gestiop. There is a security loophole in Gestio IP 3.0 committee ac67be and earlier versions, which originates from unverified ip parameters and may lead to remote command execution.
Hazard Level
Low
Vulnerability Type
其他
Affected Vendor
GestioIP
Published
2025-07-31
Last Modified
2026-02-24
References
https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/multi/ https://sourceforge.net/p/gestioip/gestioip/ci/ac67be9fce5ee4c0438d27dfa5c1dcbca08c457c/ https://sourceforge.net/projects/gestioip/ https://www.vulncheck.com/advisories/gestioip-rce
Patch
https://www.gestioip.net/actualizations_gestioip_en.html
Share on: