Medium severity5.6NVD Advisory· Published Jun 3, 2025· Updated Jun 17, 2026
CVE-2025-5525
CVE-2025-5525
Description
A vulnerability was found in Jrohy trojan up to 2.15.3. It has been declared as critical. This vulnerability affects the function LogChan of the file trojan/util/linux.go. The manipulation of the argument c leads to os command injection. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
5- github.com/Tritium0041/Jrohy-trojan-RCE-POC/blob/main/POC.pynvdExploitThird Party Advisory
- github.com/ainrm/Jrohy-trojan-unauth-poc/blob/main/README.en.mdnvdExploitThird Party Advisory
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdPermissions RequiredVDB Entry
News mentions
0No linked articles in our index yet.