cve/2025/CVE-2025-43979.md
2025-09-29 21:09:30 +02:00

683 B

CVE-2025-43979

Description

An issue was discovered on FIRSTNUM JC21A-04 devices through 2.01ME/FN that allows authenticated attackers to execute arbitrary OS system commands with root privileges via crafted payloads to the xml_action.cgi?method= endpoint.

POC

Reference

No PoCs from references.

Github