CVE Database
/

CVE-2025-6225

Back to search

CVE-2025-6225

Published: Jan 7, 2026

Modified: Jan 7, 2026

PUBLISHED

Description

Kieback&Peter Neutrino-GLT product is used for building management. It's web component "SM70 PHWEB" is vulnerable to shell command injection via login form. The injected commands would execute with low privileges. The vulnerability has been fixed in version 9.40.02

VendorProductVersions

Kieback&Peter

Neutrino-GLT

affected
0 - < 9.40.02

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now