{"api_version":"1","generated_at":"2026-07-24T20:48:11+00:00","cve":"CVE-2019-25065","urls":{"html":"https://cve.report/CVE-2019-25065","api":"https://cve.report/api/cve/CVE-2019-25065.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2019-25065","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2019-25065"},"summary":{"title":"CVE-2019-25065","description":"A vulnerability was found in OpenNetAdmin 18.1.1. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to privilege escalation. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.","state":"PUBLIC","assigner":"cna@vuldb.com","published_at":"2022-06-09 17:15:00","updated_at":"2022-06-15 17:56:00"},"problem_types":["CWE-78"],"metrics":[],"references":[{"url":"https://0day.today/exploit/33544","name":"https://0day.today/exploit/33544","refsource":"MISC","tags":[],"title":"Please Wait... | Cloudflare","mime":"text/html","httpstatus":"403","archivestatus":"404"},{"url":"https://vuldb.com/?id.146798","name":"https://vuldb.com/?id.146798","refsource":"MISC","tags":[],"title":"VDB-146798 | OpenNetAdmin code injection","mime":"text/html","httpstatus":"429","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2019-25065","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2019-25065","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2019","cve_id":"25065","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"opennetadmin","cpe5":"opennetadmin","cpe6":"18.1.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"data_type":"CVE","data_format":"MITRE","data_version":"4.0","CVE_data_meta":{"ID":"CVE-2019-25065","TITLE":"OpenNetAdmin os command injection","REQUESTER":"cna@vuldb.com","ASSIGNER":"cna@vuldb.com","STATE":"PUBLIC"},"generator":"vuldb.com","affects":{"vendor":{"vendor_data":[{"vendor_name":"","product":{"product_data":[{"product_name":"OpenNetAdmin","version":{"version_data":[{"version_value":"18.1.1"}]}}]}}]}},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"CWE-78 OS Command Injection"}]}]},"description":{"description_data":[{"lang":"eng","value":"A vulnerability was found in OpenNetAdmin 18.1.1. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to privilege escalation. The attack may be launched remotely. The exploit has been disclosed to the public and may be used."}]},"credit":"Matt Pascoe","impact":{"cvss":{"version":"3.1","baseScore":"6.3","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"}},"references":{"reference_data":[{"url":"https://0day.today/exploit/33544","refsource":"MISC","name":"https://0day.today/exploit/33544"},{"url":"https://vuldb.com/?id.146798","refsource":"MISC","name":"https://vuldb.com/?id.146798"}]}},"nvd":{"publishedDate":"2022-06-09 17:15:00","lastModifiedDate":"2022-06-15 17:56:00","problem_types":["CWE-78"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"},"exploitabilityScore":3.9,"impactScore":5.9},"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL","baseScore":7.5},"severity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:opennetadmin:opennetadmin:18.1.1:*:*:*:*:*:*:*","cpe_name":[]}]}]}},"legacy_mitre":{"record":null,"notes":[]}}}