CVE-2024-58275: Jpylypiw Easywall
High severity, CVSS 8.7. EPSS: 1.8% chance of exploitation in the next 30 days.
Easywall 0.3.1 allows authenticated remote command execution via a command injection vulnerability in the /ports-save endpoint that suffers from a parameter injection flaw. Attackers can inject shell metacharacters to execute arbitrary commands on the server.
Affected products
- Jpylypiw Easywall: version 0.3.1 only
Published 2025-12-04. Last modified 2026-09-26.