CVE-2025-7404

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Calibre Web, Autocaliweb allows Blind OS Command Injection.This issue affects Calibre Web: 0.6.24 (Nicolette); Autocaliweb: from 0.7.0 before 0.7.1.
CVSS

No CVSS.

Configurations

No configuration.

History

25 Jul 2025, 19:15

Type Values Removed Values Added
References () https://fluidattacks.com/advisories/kino - () https://fluidattacks.com/advisories/kino -

24 Jul 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-24 21:15

Updated : 2025-07-25 19:15


NVD link : CVE-2025-7404

Mitre link : CVE-2025-7404

CVE.ORG link : CVE-2025-7404


JSON object : View

Products Affected

No product.

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')