CVE-2025-8640 | Kenwood DMX958XR Firmware Update os command injection (ZDI-25-788)
A vulnerability has been found in Kenwood DMX958XR and classified as critical. Affected by this vulnerability is an unknown functionality of the component Firmware Update Handler. The manipulation leads to os command injection.
This vulnerability is known as CVE-2025-8640. It is possible to launch the attack on the physical device. There is no exploit available.