Files
CVEs-PoC/2025/CVE-2025-4008.md
T
2025-09-29 21:09:30 +02:00

1.3 KiB

CVE-2025-4008

Description

The Meteobridge web interface let meteobridge administrator manage their weather station data collection and administer their meteobridge system through a web application written in CGI shell scripts and C.This web interface exposes an endpoint that is vulnerable to command injection.Remote unauthenticated attackers can gain arbitrary command execution with elevated privileges ( root ) on affected devices.

POC

Reference

Github