CVE-2023-25911: Danfoss Ak-EM100 Firmware

High severity, CVSS 8.8. EPSS: 2.3% chance of exploitation in the next 30 days.

The Danfoss AK-EM100 web applications allow for an authenticated user to perform OS command injection through the web application parameters.

Affected products

  • Danfoss Ak-EM100 Firmware: before 2.2.0.12 (fixed in 2.2.0.12)

Published 2023-06-11. Last modified 2026-06-17.