A vulnerability has been identified in OZW672 (All...
Critical severity
Unreviewed
Published
May 13, 2025
to the GitHub Advisory Database
•
Updated May 13, 2025
Description
Published by the National Vulnerability Database
May 13, 2025
Published to the GitHub Advisory Database
May 13, 2025
Last updated
May 13, 2025
A vulnerability has been identified in OZW672 (All versions < V8.0), OZW772 (All versions < V8.0). The web service in affected devices does not sanitize the input parameters required for the
exportDiagramPage
endpoint. This could allow an unauthenticated remote attacker to execute arbitrary code with root privileges.References