Your RSA-2048 keys break in 2030. Find every one of them before attackers do.

CVE-2019-12725

CRITICAL

Zeroshell 3.9.0 is prone to a remote command execution vulnerability. Specifically, this issue occurs because the web application mishandles a few HTTP parameters. An unauthenticated…

Published
Jul 19, 2019
Updated
Nov 21, 2024
Affected
0 pkgs
Patched
None yet
Exploits
9 known

EPSS Exploitation Probability

via FIRST.org ↗
94.2%probability of exploitation in next 30 days
Very High Risk100th percentile+0.18%
93.5%93.9%94.3%94.7%94.1%94.2%Dec 25Apr 26Jun 26

EPSS (Exploit Prediction Scoring System) is a daily probability model maintained by FIRST.org. It estimates the likelihood a CVE will be exploited in production environments within the next 30 days, derived from real-world threat intelligence signals.

Description

Zeroshell 3.9.0 is prone to a remote command execution vulnerability. Specifically, this issue occurs because the web application mishandles a few HTTP parameters. An unauthenticated attacker can exploit this issue by injecting OS commands inside the vulnerable parameters.

Affected Products

1 product · 1 configurations
OS
zeroshellzeroshell
1 version
3.9.0
Exploits & PoCs
9

Research use only. For defensive security, authorized penetration testing, and academic research only. Never execute exploit code against systems without explicit written authorization.

EDB-49862webappslinux

ZeroShell 3.9.0 - Remote Command Execution

by Fellipe Oliveira · May 13, 2021

EDB-49096webappslinux✓ Verified

ZeroShell 3.9.0 - 'cgi-bin/kerbynet' Remote Root Command Injection (Metasploit)

by Giuseppe Fuggiano · Nov 24, 2020

Frequently Asked Questions

Zeroshell 3.9.0 is prone to a remote command execution vulnerability. Specifically, this issue occurs because the web application mishandles a few HTTP parameters. An unauthenticated attacker can exploit this issue by injecting OS commands inside the vulnerable parameters.
O3 Security · Impact-Aware SCA

Is CVE-2019-12725 in your stack?

O3 detects CVE-2019-12725 across dependencies and uses function-level reachability to confirm whether the vulnerable code path is actually reachable — not just present. No false positives.