OS Command Injection in iSherlock Web Service by HGiga
CVE-2025-3362
9.8CRITICAL
What is CVE-2025-3362?
The iSherlock web service by HGiga is susceptible to an OS Command Injection vulnerability. This flaw enables unauthenticated remote attackers to inject arbitrary operating system commands, which can be executed on the server. Such vulnerabilities pose serious risks as they can lead to unauthorized access and control over the affected systems. Organizations using iSherlock should immediately assess their exposure and apply necessary mitigations.
Affected Version(s)
iSherlock 4.5 0 < 236
iSherlock 5.5 0 < 236
