Vulnerability Description
Kieback&Peter Neutrino-GLT product is used for building management. It's web component "SM70 PHWEB" is vulnerable to shell command injection via login form. The injected commands would execute with low privileges. The vulnerability has been fixed in version 9.40.02
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-6225?
CVE-2025-6225 is a documented vulnerability. Kieback&Peter Neutrino-GLT product is used for building management. It's web component "SM70 PHWEB" is vulnerable to shell command injection via login form. The injected commands would execute with lo...
How severe is CVE-2025-6225?
CVSS scoring is not yet available for CVE-2025-6225. Check NVD for updates.
Is there a patch for CVE-2025-6225?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.