OS Command Injection Vulnerability in iSherlock by HGiga
CVE-2025-3363
9.8CRITICAL
What is CVE-2025-3363?
iSherlock, a web service from HGiga, is vulnerable to OS Command Injection, allowing unauthenticated remote attackers to execute arbitrary OS commands on the server. This flaw exposes sensitive server functionalities to exploitation, which can lead to unauthorized data access and potential system compromise.
Affected Version(s)
iSherlock 4.5 0 < 236
iSherlock 5.5 0 < 236
