Improper neutralization of special elements used in an OS command...
Vulnerability Description
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in I-O DATA network attached hard disk 'HDL-T Series' firmware Ver.1.21 and earlier when 'Remote Link3 function' is enabled. If exploited, a remote unauthenticated attacker may execute an arbitrary OS command.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-32002
Credits & Attribution
No credits recorded in the NVD database.
References
More from I-O DATA DEVICE, INC.
View All →Affected Vendor
I-O DATA DEVICE, INC.
View all reports →