peter bassill · operator
$ cve CVE-2025-34035 JSON

CVE-2025-34035

9.8
CRITICAL · CVSS 3.1 · EPSS 12.5% (pctl 96)

Patch early

EPSS 12.5% — above the 10% action threshold.

Description

An OS command injection vulnerability exists in EnGenius EnShare Cloud Service version 1.4.11 and earlier. The usbinteract.cgi script fails to properly sanitize user input passed to the path parameter, allowing unauthenticated remote attackers to inject arbitrary shell commands. The injected commands are executed with root privileges, leading to full system compromise. Exploitation evidence was observed by the Shadowserver Foundation on 2024-12-05 UTC.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS12.53% — more likely to be exploited than 96% of all CVEs
WeaknessCWE-78
On CISA KEVno
Public exploitnone known
Published2025-06-24
Last modified2026-06-17

Affected (14)

VendorProduct
engeniustechepg5000
engeniustechepg5000 firmware
engeniustechesr1200
engeniustechesr1200 firmware
engeniustechesr1750
engeniustechesr1750 firmware
engeniustechesr300
engeniustechesr300 firmware
engeniustechesr350
engeniustechesr350 firmware
engeniustechesr600
engeniustechesr600 firmware
engeniustechesr900
engeniustechesr900 firmware

References

→ the Explorer  ·  watch your stack  ·  NVD