CVE-2025-25504 Details
Description
An issue in the /usr/local/bin/jncs.sh script of Gefen WebFWC (In AV over IP products) v1.85h, v1.86v, and v1.70 allows attackers with network access to connect to the device over TCP port 4444 without authentication and execute arbitrary commands with root privileges.
A remote code execution vulnerability has been identified in Gefen WebFWC AV over IP products, specifically in versions 1.85h, 1.86v, and 1.70. The issue arises in the '/usr/local/bin/jncs.sh' script, which is executed at startup. This script opens a persistent netcat listener on TCP port 4444, allowing attackers with network access to connect to the device without authentication and execute arbitrary commands with root privileges.
There is currently no fix available for this vulnerability. Users are advised to restrict network access to the devices, blocking access to port 4444 from untrusted networks, and to monitor for unauthorized activity.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed May 5, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.troy-wilson.com/cve-2025-25504.html | [email protected] | ExploitThird Party Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-287 | Improper Authentication | CISA-ADP |
| CWE-77 | Improper Neutralization of Special Elements used in a Command ('Command Injection') | CISA-ADP |
Affected Products
| Product | Versions |
|---|---|
| niceforyou gefen webfwc | 1.70v 1.85h 1.86v |
CPE
Remediation
| |
| niceforyou gefen gf-avip-mc firmware | a5.22 a5.310 |
CPE
Remediation
| |
Change History
6 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 5, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 17, 2025 | Initial Analysis | [email protected] |
| May 5, 2025 | CVE Modified | CISA-ADP |
| May 5, 2025 | New CVE Received | [email protected] |