PT-2025-53341 · Unknown · Videoflow Digital Video Protection Dvp

Published

2025-12-24

·

Updated

2025-12-24

·

CVE-2019-25255

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions VideoFlow Digital Video Protection DVP version 2.10
Description The software contains an authenticated remote code execution issue that enables attackers to execute system commands with root privileges. Exploitation occurs through a cross-site request forgery (CSRF) mechanism, allowing unauthorized system access.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

RCE

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-25255

Affected Products

Videoflow Digital Video Protection Dvp