CISA Flags Meteobridge CVE-2025-4008 Flaw as Actively Exploited in the Wild
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a high-severity security flaw impacting Smartbedded Meteobridge to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability, CVE-2025-4008 (CVSS score: 8.7), is a case of command injection in the Meteobridge web interface that could result in code execution. "
CISA Flags Meteobridge CVE-2025-4008 Flaw as Actively Exploited in the Wild
Description
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a high-severity security flaw impacting Smartbedded Meteobridge to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability, CVE-2025-4008 (CVSS score: 8.7), is a case of command injection in the Meteobridge web interface that could result in code execution. "
Technical Details
- Article Source
- {"url":"https://thehackernews.com/2025/10/cisa-flags-meteobridge-cve-2025-4008.html","fetched":true,"fetchedAt":"2025-10-07T01:05:08.848Z","wordCount":1008}
Threat ID: 68e467466a45552f36e85b43
Added to database: 10/7/2025, 1:05:10 AM
Last updated: 10/7/2025, 1:06:18 AM
Views: 1
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Related Threats
Urgent: China-Linked Hackers Exploit New VMware Zero-Day Since October 2024
HighLearn How Leading Security Teams Blend AI + Human Workflows (Free Webinar)
LowOneLogin Bug Let Attackers Use API Keys to Steal OIDC Secrets and Impersonate Apps
HighWarning: Beware of Android Spyware Disguised as Signal Encryption Plugin and ToTok Pro
MediumRhadamanthys Stealer Evolves: Adds Device Fingerprinting, PNG Steganography Payloads
MediumActions
External Links
Need enhanced features?
Contact root@offseq.com for Pro access with improved analysis and higher rate limits.