Remote Code Execution Vulnerability in Ilevia EVE X1 Server Firmware
CVE-2025-60738
Currently unrated
What is CVE-2025-60738?
A vulnerability exists in Ilevia EVE X1 Server Firmware Version v4.7.18.0.eden and earlier, along with Logic Version v6.00 - 2025_07_21 and prior, exposing systems to potential remote code execution. This arises from the inadequate filtering of IP parameters within the ping.php component, allowing attackers to exploit the flaw and execute arbitrary code remotely. Administrators are urged to implement security best practices and apply necessary updates to mitigate these risks.
