Unrated severityNVD Advisory· Published Nov 25, 2025· Updated Nov 25, 2025
CVE-2025-60739
CVE-2025-60739
Description
Cross Site Request Forgery (CSRF) vulnerability in Ilevia EVE X1 Server Firmware Version v4.7.18.0.eden and before, Logic Version v6.00 - 2025_07_21 allows a remote attacker to execute arbitrary code via the /bh_web_backend component
Affected products
2- Ilevia/EVE X1 Server Firmwaredescription
- Range: <=4.7.18.0.eden
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
News mentions
0No linked articles in our index yet.