CVE-2025-48047

Publication date

2025-05-29 12:36:13

Family

rapid7

State

PUBLISHED

Description

An authenticated user can perform command injection via unsanitized input to the NetFax Server’s ping functionality via the /test.php endpoint.