A template injection vulnerability exists in Sawtooth Software’s Lighthouse Studio versions prior to 9.16.14 via the ciwweb.pl http://ciwweb.pl/ Perl web application. Exploitation allows an unauthenticated attacker can execute arbitrary commands.
CVSS
No CVSS.
References
Configurations
No configuration.
History
16 Jul 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
References | () https://slcyber.io/assetnote-security-research-center/rce-in-the-most-popular-survey-software-youve-never-heard-of/ - |
16 Jul 2025, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-16 13:15
Updated : 2025-07-16 15:15
NVD link : CVE-2025-34300
Mitre link : CVE-2025-34300
CVE.ORG link : CVE-2025-34300
JSON object : View
Products Affected
No product.