A command injection vulnerability has been reported to...
Low severity
Unreviewed
Published
Aug 29, 2025
to the GitHub Advisory Database
•
Updated Dec 8, 2025
Description
Published by the National Vulnerability Database
Aug 29, 2025
Published to the GitHub Advisory Database
Aug 29, 2025
Last updated
Dec 8, 2025
A command injection vulnerability has been reported to affect HybridDesk Station. If an attacker gains local network access, they can then exploit the vulnerability to execute arbitrary commands.
We have already fixed the vulnerability in the following version:
HybridDesk Station 4.2.18 and later
References