logo

CVE-2025-41276 | Waterfall WF-500 up to 7.9.1.0 R2502171040 Console WebUI os command injection

ID: ab464ccf-ab79-565b-979a-02bf3f09f1ce

STIX ID: report--ab464ccf-ab79-565b-979a-02bf3f09f1ce

Feed Name: VulDB Recent Entries

Threat Score
70/100

Date Published: 2026-05-29

Date Updated: 2026-05-29

Author: vuldb.com

...
...

A critical remote, unauthenticated OS command injection (CVE-2025-41276) affecting the Console WebUI of Waterfall WF-500 (version up to 7.9.1.0 R2502171040) was disclosed. The flaw is rated CVSS 9.8 and can impact confidentiality, integrity, and availability; no public exploit is available yet and no mitigation is provided in the advisory.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.