PT-2026-78899 · Vsdesk · Vsdesk

·

CVE-2025-14601

·

Published

2026-08-20

·

Updated

2026-08-20

CVSS v4.0

8.6

High

VectorAV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions vsDesk versions prior to 14.0101
Description An OS command injection flaw exists due to insufficient input filtering. This allows an authenticated attacker with administrative privileges to execute arbitrary operating system commands, which could lead to disrupted web server operations, exposure of sensitive data, or full server compromise.
Recommendations Update to version 14.0101 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-14601

Affected Products

Vsdesk