CVE-2025-8647 | Kenwood DMX958XR Firmware Update os command injection (ZDI-25-795)
A vulnerability was found in Kenwood DMX958XR and classified as critical. Affected by this issue is some unknown functionality of the component Firmware Update Handler. The manipulation leads to os command injection.
This vulnerability is handled as CVE-2025-8647. It is possible to launch the attack on the physical device. There is no exploit available.