VYPR
Critical severity9.8NVD Advisory· Published Jul 19, 2019· Updated Jun 17, 2026

CVE-2019-12725

CVE-2019-12725

Description

Zeroshell 3.9.0 is prone to a remote command execution vulnerability. Specifically, this issue occurs because the web application mishandles a few HTTP parameters. An unauthenticated attacker can exploit this issue by injecting OS commands inside the vulnerable parameters.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:o:zeroshell:zeroshell:3.9.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:zeroshell:zeroshell:3.9.0:*:*:*:*:*:*:*
    • (no CPE)range: 3.9.0
  • Zeroshell/Zeroshelldescription

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.