OS Command Injection Vulnerability in Waterfall WF-500 TX and RX Hosts by Nozomi Networks
CVE-2025-41276

9.3CRITICAL

Key Information:

Vendor

Waterfall

Status
Vendor
CVE Published:
29 May 2026

What is CVE-2025-41276?

A vulnerability discovered in Nozomi Networks' Waterfall WF-500 TX and RX Hosts allows remote, unauthenticated attackers to execute arbitrary operating system commands via the Console WebUI. This issue arises from a failure to properly neutralize special elements used in OS commands, classified as CWE-78. Exploiting this vulnerability can compromise the integrity of the device and lead to unauthorized access.

Affected Version(s)

WF-500 0 <= 7.9.1.0 R2502171040

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Luca Borzacchiello at Nozomi Networks
.