Multiple products provided by iND Co.,Ltd contain an OS command injection vulnerability. If exploited, an arbitrary OS command may be executed and sensitive information may be obtained. As for the details of affected product names and versions, refer to the information under [Product Status].
History

Fri, 29 Aug 2025 12:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 29 Aug 2025 04:30:00 +0000

Type Values Removed Values Added
Description Multiple products provided by iND Co.,Ltd contain an OS command injection vulnerability. If exploited, an arbitrary OS command may be executed and sensitive information may be obtained. As for the details of affected product names and versions, refer to the information under [Product Status].
Weaknesses CWE-78
References
Metrics cvssV3_0

{'score': 7.2, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 8.6, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2025-08-29T12:04:32.453Z

Reserved: 2025-07-02T00:52:40.812Z

Link: CVE-2025-53508

cve-icon Vulnrichment

Updated: 2025-08-29T12:04:29.575Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-08-29T05:15:31.303

Modified: 2025-08-29T16:24:29.730

Link: CVE-2025-53508

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.