A vulnerability in the “Remote Logging” functionality of...
High severity
Unreviewed
Published
Apr 30, 2025
to the GitHub Advisory Database
•
Updated Apr 30, 2025
Description
Published by the National Vulnerability Database
Apr 30, 2025
Published to the GitHub Advisory Database
Apr 30, 2025
Last updated
Apr 30, 2025
A vulnerability in the “Remote Logging” functionality of the web application of ctrlX OS allows a remote authenticated (low-privileged) attacker to execute arbitrary OS commands in the context of user “root” via a crafted HTTP request.
References