CVE-2025-3983 | AMTT Hotel Broadband Operation System 1.0 nlog_down.php ProtocolType command injection
A vulnerability described as critical has been identified in AMTT Hotel Broadband Operation System 1.0. Affected by this issue is some unknown functionality of the file /manager/system/nlog_down.php. The manipulation of the argument ProtocolType results in command injection.
This vulnerability was named CVE-2025-3983. The attack may be performed from remote. In addition, an exploit is available.
Other parameters might be affected as well. The vendor was contacted early about this disclosure but did not respond in any way.