CVE-2025-34041 - CVE House
Back to Database
Status published Critical CVE-2025-34041

Sangfor Endpoint Detection and Response OS Command Injection

Vulnerability Description

An OS command injection vulnerability exists in the Chinese versions of Sangfor Endpoint Detection and Response (EDR) management platform versions 3.2.16, 3.2.17, and 3.2.19. The vulnerability allows unauthenticated attackers to construct and send malicious HTTP requests to the EDR Manager interface, leading to arbitrary command execution with elevated privileges. This flaw only affects the Chinese-language EDR builds. Exploitation evidence was observed by the Shadowserver Foundation on 2025-02-04 UTC.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-34041

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Sangfor Technologies Co., Ltd.

View all reports →

Affected Software

Endpoint Detection and Response Platform
Vulnerable Versions:
3.2.16, 3.2.17, 3.2.19

Timeline

Official Publish: June 24th, 2025
Last Modified: July 14th, 2026
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)