Critical severity9.8NVD Advisory· Published Nov 20, 2025· Updated Jun 17, 2026
CVE-2025-60738
CVE-2025-60738
Description
An issue in Ilevia EVE X1 Server Firmware Version v4.7.18.0.eden and before Logic Version v6.00 - 2025_07_21 and before allows a remote attacker to execute arbitrary code via the ping.php component does not perform secure filtering on IP parameters
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<=v4.7.18.0.eden, <2025_07_21+ 1 more
- (no CPE)range: <=v4.7.18.0.eden, <2025_07_21
- (no CPE)
- cpe:2.3:o:ilevia:eve_x1_server_firmware:4.7.18.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.