CVE-2025-3621: Protns Actadur

Critical severity, CVSS 9.6. EPSS: 0.7% chance of exploitation in the next 30 days.

Vulnerabilities* in ActADUR local server product, developed and maintained by ProTNS, allows Remote Code Inclusion on host systems.  * vulnerabilities: * Improper Neutralization of Special Elements used in a Command ('Command Injection') * Use of Hard-coded Credentials * Improper Authentication * Binding to an Unrestricted IP Address The vulnerability has been rated as critical.This issue affects ActADUR: from v2.0.1.9 before v2.0.2.0., hence updating to version v2.0.2.0. or above is required.

Affected products

  • Protns Actadur: from v2.0.1.9, before v2.0.2.0 (fixed in v2.0.2.0)

Published 2025-07-15. Last modified 2026-06-17.