Remote Code Execution Vulnerability in Airpointer 2D by JCT Analyzers
CVE-2025-4635

6.6MEDIUM

Key Information:

Vendor

Jct

Vendor
CVE Published:
30 May 2025

What is CVE-2025-4635?

A vulnerability exists in the Airpointer 2D that allows an attacker with administrative access to the web portal to exploit the Diagnostics module. This exploitation can lead to remote code execution on the affected device, allowing a low-privileged user to gain unauthorized control over system resources.

Affected Version(s)

Airpointer 2.4.107-2

References

CVSS V3.1

Score:
6.6
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-4635 : Remote Code Execution Vulnerability in Airpointer 2D by JCT Analyzers