CVE-2025-5147: Netcore b6v2
Medium severity, CVSS 6.3. EPSS: 1.2% chance of exploitation in the next 30 days.
A vulnerability was found in Netcore NBR1005GPEV2, NBR200V2 and B6V2 up to 20250508 and classified as critical. This issue affects the function tools_ping of the file /usr/bin/network_tools. The manipulation of the argument url leads to command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected products
- Netcore b6v2: version 20250508 only
- Netcore NBR1005GPEV2: version 20250508 only
- Netcore NBR200V2: version 20250508 only
Published 2025-05-25. Last modified 2026-06-17.