PT-2025-48818 · Avtech Security · Dgm1104
Published
2025-05-30
·
Updated
2025-12-08
·
CVE-2025-57198
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1003
Description
The software contains an authenticated command injection issue in the
/Machine.cgi API endpoint. Attackers can execute arbitrary commands by providing a crafted input. The vulnerability requires authentication.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dgm1104