CVE-2025-44015

Source
https://cve.org/CVERecord?id=CVE-2025-44015
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-44015.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-44015
Published
2025-08-29T18:15:42.097Z
Modified
2026-04-10T05:26:46.490275Z
Severity
  • 8.4 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A command injection vulnerability has been reported to affect HybridDesk Station. If an attacker gains local network access, they can then exploit the vulnerability to execute arbitrary commands.

We have already fixed the vulnerability in the following version: HybridDesk Station 4.2.18 and later

References

Affected packages

Git /

Affected ranges

Database specific

unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "4.2.0"
            },
            {
                "fixed": "4.2.18"
            }
        ]
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-44015.json"