Critical severity9.8NVD Advisory· Published Mar 11, 2026· Updated Apr 15, 2026
CVE-2019-25468
CVE-2019-25468
Description
NetGain EM Plus 10.1.68 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary system commands by submitting malicious parameters to the script_test.jsp endpoint. Attackers can send POST requests with shell commands embedded in the 'content' parameter to execute code and retrieve command output.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: =10.1.68
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.