CVE-2024-58275: Jpylypiw Easywall

High severity, CVSS 8.7. EPSS: 1.8% chance of exploitation in the next 30 days.

Easywall 0.3.1 allows authenticated remote command execution via a command injection vulnerability in the /ports-save endpoint that suffers from a parameter injection flaw. Attackers can inject shell metacharacters to execute arbitrary commands on the server.

Affected products

Published 2025-12-04. Last modified 2026-09-26.