← Back to browse · API

CVE-2025-48047

Severity
CRITICAL
CVSS
9.4
EPSS
0.13532
Risk score
42.34
CISA KEV
No
PoC
No
Published
2025-05-29
Modified
2025-05-29
First seen
2026-08-07
Aliases
EUVD-2025-16371, GHSA-XHW7-R59X-5M6X
Products
MICI Network Co. Ltd.:NetFax Server 0 <3.0.1.0
Sources
euvd EUVD-2025-16371

Description

An authenticated user can perform command injection via unsanitized input to the NetFax Server’s ping functionality via the /test.php endpoint.

References