---
id: CVE-2025-15131
title: A vulnerability was found in ZSPACE Z4Pro+ 1.0.0440024
summary: >-
  A vulnerability was found in ZSPACE Z4Pro+ 1.0.0440024. Impacted is the
  function zfilev2_api_SafeStatus of the file /v2/file/safe/status of the
  component HTTP POST Request Handler. The manipulation results in command
  injection. The attac…
severity: medium
cvss: 6.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L'
cwe:
  - CWE-74
  - CWE-77
  - CWE-77
vendor: zspace
product: z4pro+_firmware
affected:
  - z4pro+_firmware <= 1.0.0440024
published: '2025-12-28'
updated: '2026-10-05'
sourceUpdated: '2026-10-05T19:10:00.210'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-15131'
references:
  - url: 'https://github.com/LX-66-LX/cve/issues/1'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?ctiid.338509'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?id.338509'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?submit.713874'
    label: cna@vuldb.com
tags:
  - nvd
epss: 0.07643
epssPercentile: 0.94403
ingestedAt: '2026-10-05T19:30:59.946Z'
---

## Overview

A vulnerability was found in ZSPACE Z4Pro+ 1.0.0440024. Impacted is the function zfilev2_api_SafeStatus of the file /v2/file/safe/status of the component HTTP POST Request Handler. The manipulation results in command injection. The attack may be performed from remote. The exploit has been made public and could be used. The vendor was contacted early about this disclosure.

## Affected

- `z4pro+_firmware <= 1.0.0440024`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
