CVE-2025-24351

Publication date

2025-04-30 11:47:00

Family

bosch

State

PUBLISHED

Description

A vulnerability in the “Remote Logging” functionality of the web application of ctrlX OS allows a remote authenticated (low-privileged) attacker to execute arbitrary OS commands in the context of user “root” via a crafted HTTP request.