A vulnerability was determined in SGAI Space1 NAS N1211DS...
Moderate severity
Unreviewed
Published
Dec 7, 2025
to the GitHub Advisory Database
•
Updated Dec 7, 2025
Description
Published by the National Vulnerability Database
Dec 7, 2025
Published to the GitHub Advisory Database
Dec 7, 2025
Last updated
Dec 7, 2025
A vulnerability was determined in SGAI Space1 NAS N1211DS up to 1.0.915. Impacted is the function RENAME_FILE/OPERATE_FILE/NGNIX_UPLOAD of the file /cgi-bin/JSONAPI of the component gsaiagent. This manipulation causes command injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
References