CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2025-65854

Critical · CVSS 9.8

MineAdmin — Insecure Permissions leading to Arbitrary Command Execution (Code Injection)

CVSS
9.8
nvd
EPSS
KEV
No
Class
other
CWE-94

Description

Insecure permissions in the scheduled tasks feature of MineAdmin v3.x allows attackers to execute arbitrary commands and execute a full account takeover.

Search profile — drives PoC discovery

Symbols scheduled taskstask schedulercronarbitrary commandaccount takeoverMineAdmin
Keywords CVE-2025-65854MineAdminMineAdmin v3scheduled tasksarbitrary command executionaccount takeoverinsecure permissionsCWE-94MineAdmin exploitMineAdmin PoC
Versions: v3.x

References

Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-06T06:30:39.000Z