CNNVD-202511-2335 Information

CNNVD ID

CNNVD-202511-2335

CVE-2025-60738

  • CNNVD Published: 2025-11-20

Description (Chinese)

Ilevia EVE X1 Server是意大利Ilevia公司的一款智能家居与楼宇自动化。 Ilevia EVE X1 Server存在安全漏洞,该漏洞源于ping.php组件未对IP参数进行安全过滤,可能导致执行任意代码。

Description (English)

Ilevia EVE X1 Server is an intelligent home and building automation for Ilevia in Italy. There is a security loophole in Ilevia EVE X1 Server, which stems from the failure of the ping.php component to securely filter IP parameters, which may lead to the implementation of any code.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Ilevia

Published

2025-11-20

Last Modified

2026-02-24

References

https://github.com/iSee857/ilevia-EVE-X1-Server https://access.redhat.com/security/cve/cve-2025-60738

Share on: