VendorsSOUND4firstany version
Vulnerabilities

SOUND4 First any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2023-53965
SOUND4 Server Service 4.1.102 Local Privilege Escalation via Unquoted Service Path
Published 2025-12-22 · Analyzed
8.6EPSS 0.002
CVE-2025-63220
The Sound4 FIRST web-based management interface is vulnerable to Remote Code Execution (RCE) via a malicious firmware update package. The update mechanism fails to validate the integrity of manual.sh, allowing an attacker to inject arbitrary commands by modifying this script and repackaging the firmware.
Published 2025-11-19 · Analyzed
7.2EPSS 0.005