Metrics
Affected Vendors & Products
Tue, 09 Dec 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sgai
Sgai space1 Nas N1211ds |
|
| Vendors & Products |
Sgai
Sgai space1 Nas N1211ds |
Mon, 08 Dec 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 07 Dec 2025 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in SGAI Space1 NAS N1211DS up to 1.0.915. Impacted is the function RENAME_FILE/OPERATE_FILE/NGNIX_UPLOAD of the file /cgi-bin/JSONAPI of the component gsaiagent. This manipulation causes command injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | SGAI Space1 NAS N1211DS gsaiagent JSONAPI NGNIX_UPLOAD command injection | |
| Weaknesses | CWE-74 CWE-77 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-12-08T17:13:07.326Z
Reserved: 2025-12-06T09:02:18.724Z
Link: CVE-2025-14184
Updated: 2025-12-08T17:03:34.922Z
Status : Awaiting Analysis
Published: 2025-12-07T05:15:49.747
Modified: 2025-12-08T18:26:49.133
Link: CVE-2025-14184
No data.