CVE-2025-1338Disclosure

MEDIUMCVSS 6.9 · MEDIUM

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Prioritize remediation for affected systems immediately
  • Assume compromise if assets are exposed
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

A vulnerability was found in NUUO Camera up to 20250203. It has been declared as critical. This vulnerability affects the function print_file of the file /handle_config.php. The manipulation of the argument log leads to command injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

5.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-77

Priority

MEDIUM

Exploitation

ACTIVE

PoC

YES

Patch

NONE

Momentum

STABLE

Threat summary

  • Active exploitation appears in 1 classified signals
  • Public PoC is present in monitored signal
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • PoC mentioned or linked in 1 signal
  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-02-12); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-02-12: 1Mentions · 2026-04-14: 1PoC Mentioned / Linked · 2026-02-12: 1Active Exploitation · 2026-04-14: 1Technical Details · 2026-02-12: 102-1204-14
Signal classification2 categories
Disclosure
150.0%
Active Exploitation
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-02-121
Disclosure1
2026-04-141
Active Exploitation1
Full discourse2 posts
  • pdnuclei-bot@pdnuclei_bot
    Disclosure

    🚨 CVE-2025-1338 - critical 🚨 NUUO Camera <=20250203 - OS Command Injection > NUUO Camera up to 20250203 contains a command injection caused by manipulation of the... 👾 https://cloud.projectdiscovery.io/library/CVE-2025-1338 @pdnuclei #NucleiTemplates #cve

    Post summary

    CVE‑2025‑1338 is a critical OS command injection vulnerability affecting NUUO Camera firmware up to 20250203, with a reference link to a Project Discovery library that likely contains PoC details.

    00011169
    890 followersView on X
  • CTIWatch@ctiwatchcloud
    Active Exploitation

    🚨 [HIGH] Active exploitation detected: CVE-2025-1338 Exploit in the wild confirmed for CVE-2025-1338 (CVSS null). A vulnerability was found in NUUO Camera up to 20250203. It has been declared as critical... 🔗 http://ctiwatch.cloud/alerts #ZeroDay #ExploitInWild #CyberSecurity

    Post summary

    CVE-2025-1338 is confirmed to be actively exploited in the wild, with no evidence of available PoC, exploit code, or remediation information in the given text.

    00000191
    5.6K followersView on X

Explore more