CVE-2025-47228

Scores

EPSS

0.000none0.0%
0%20%40%60%80%100%

Percentile: 0.0%

CVSS

6.7medium3.x
0246810

CVSS Score: 6.7/10

All CVSS Scores

CVSS 3.x
6.7

Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L

Description

In the Production Environment extension in Netmake ScriptCase through 9.12.006 (23), shell injection in the SSH connection settings allows authenticated attackers to execute system commands via crafted HTTP requests.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

anchore_overrides

CWEs

CWE-78

Exploits

Exploit ID: 52353

Source: exploitdb

URL: https://www.exploit-db.com/exploits/52353

Vulnerable Software (1)

Type: Configuration

Operating System:

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:scriptcase:scriptcase:*:*:*:*:*:*:*:*",          "versionEndIncluding": "9.12.006 (23)"        }      ],    ...

Source: anchore_overrides