Evertz Vulnerabilities and Affected Products
Vulnerabilities associated with 3080ipx-10G.
Products
Clear product- 7890IXG4 vulnerabilities
- 3080ipx-10G3 vulnerabilities
- 5782XPS-APP-4E3 vulnerabilities
- CC Access Server3 vulnerabilities
- cVIP3 vulnerabilities
- MViP-II3 vulnerabilities
- 3080ipx1 vulnerability
- 7801fc1 vulnerability
- SDVN 3080ipx-10G1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2025-10364CRITICAL | Unauthenticated Arbitrary Command Injection in Evertz SDVNThe Evertz SDVN 3080ipx-10G is a High Bandwidth Ethernet Switching Fabric for Video Application. This device exposes a web management interface on port 80. This web management interface can be used by administrators to control product features, setup network switching, and register license among other features. The application has been developed in PHP with the webEASY SDK, also named ‘ewb’ by Evertz. This web interface has two endpoints that are vulnerable to arbitrary command injection (CVE-2… CWE-77Sep 12, 2025 | CVSS9.3v4.0 | EPSS6.17% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-10365CRITICAL | Authentication Bypass in Evertz SDVNThe Evertz SDVN 3080ipx-10G is a High Bandwidth Ethernet Switching Fabric for Video Application. This device exposes a web management interface on port 80. This web management interface can be used by administrators to control product features, setup network switching, and register license among other features. The application has been developed in PHP with the webEASY SDK, also named ‘ewb’ by Evertz. This web interface has two endpoints that are vulnerable to arbitrary command injection (CVE-2… CWE-287Sep 12, 2025 | CVSS9.3v4.0 | EPSS5.64% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-4009CRITICAL | Unauthenticated Arbitrary Command Injection in Evertz SDVNThe Evertz SDVN 3080ipx-10G is a High Bandwidth Ethernet Switching Fabric for Video Application. This device exposes a web management interface on port 80. This web management interface can be used by administrators to control product features, setup network switching, and register license among other features. The application has been developed in PHP with the webEASY SDK, also named ‘ewb’ by Evertz. This web interface has two endpoints that are vulnerable to arbitrary command injection (CVE-2… | CVSS9.3v4.0 | EPSS75% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |