PT-2025-48820 · Avtech Security · Dgm1104

Published

2025-05-30

·

Updated

2026-06-01

·

CVE-2025-57201

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1003
Description The AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1003 device contains an authenticated command injection issue within the SMB server function. This allows attackers to execute arbitrary commands by providing a specially crafted input. The vulnerability requires authentication to exploit.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Command Injection

Weakness Enumeration

Related Identifiers

BDU:2025-16223
CVE-2025-57201

Affected Products

Dgm1104