Record summary

CVE-2025-32813 has a selected CVSS score of 7.2 (high); EIP currently links 1 curated repository PoC and 1 Nuclei template.

Description

An issue was discovered in Infoblox NETMRI before 7.6.1. Remote Unauthenticated Command Injection can occur.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Jul 31, 2025 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Curated repository PoCs
1
Nuclei templates
1

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated May 23, 2025 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

Proofs of concept

1

Curated repository PoCs

GitHubCVE-2025-32813Curated repository PoCby RhinoSecurityLabsStars: 905Not analyzed2 files

Python · 15.7 KiB

GitHub

PoC details

Nuclei templates

1
ProjectDiscoveryHIGHInfoblox NetMRI < 7.6.1 - Unauthenticated Command Injection in get_saml_requestCVSS 7.2

An issue was discovered in Infoblox NETMRI before 7.6.1. Remote Unauthenticated Command Injection can occur.

Impact

Unauthenticated attackers can execute arbitrary operating system commands with elevated privileges through the saml_id parameter in the get_saml_request endpoint.

Remediation

Upgrade to Infoblox NetMRI version 7.6.1 or later that properly sanitizes user input in SAML request handling.

WeaknessesCWE-77
Authorsiamnoooob, pdresearch
Template tagscvecve2025infobloxnetmrircevkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:a:infoblox:netmri:*:*:*:*:*:*:*:*
FOFA: Infoblox NetMRI

Source: ProjectDiscovery

References

2