CNNVD-202511-1972 Information

CNNVD ID

CNNVD-202511-1972

CVE-2025-63215

  • CNNVD Published: 2025-11-18

Description (Chinese)

Sound4 IMPACT是法国Sound4公司的一款专业广播音频处理器。 Sound4 IMPACT存在安全漏洞,该漏洞源于固件更新机制未验证manual.sh完整性,可能导致远程代码执行。

Description (English)

Sound4 IMPACT is a specialized radio audio processor for Sound4 in France. Sound4 IMPACT had a security loophole, which stemmed from the fact that the solidware update mechanism did not validate the integrity of manual.sh, which could lead to remote code implementation.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Sound4

Published

2025-11-18

Last Modified

2026-02-24

References

https://github.com/shiky8/my–cve-vulnerability-research/tree/main/CVE-2025-63215%20_%20Sound4%20IMPACT%20%20RCE https://www.sound4helpdesk.com/ https://www.sound4helpdesk.com/impact-downloads/ https://access.redhat.com/security/cve/cve-2025-63215

Patch

https://www.sound4helpdesk.com/impact-downloads/

Share on: