Security Advisory
CVE-2025-61865
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Multiple NAS management applications provided by I-O DATA DEVICE, INC. register Windows services with unquoted file paths. A user with the write permission on the root directory of the system drive may execute arbitrary code with SYSTEM privilege.