CVE-2025-47228 Information

Description

In the Production Environment extension in Netmake ScriptCase through 9.12.006 (23) shell injection in the SSH connection settings allows authenticated attackers to execute system commands via crafted HTTP requests.

Reference

https://github.com/synacktiv/CVE-2025-47227_CVE-2025-47228 https://www.scriptcase.net/changelog/ https://www.synacktiv.com/advisories/scriptcase-pre-authenticated-remote-command-execution

CNNVD-202507-522 (Published: 2025-07-04)

Share on: