CVE-2025-60787
MotionEye v0.43.1b4 and before is vulnerable to OS Command Injection in configuration parameters such as image_file_name. Unsanitized user input is written to Motion configuration files, allowing remote authenticated attackers with admin access to achieve code execution when Motion is restarted.
- Affected products
- Motioneye
- Motioneye Project Motioneye
- = 0.42.1, 0.43.1
- CVSS 3.1
- 7.2 HIGH
- EPSS
- 18.5% (97th percentile)
- Weakness
- CWE-20, CWE-116, CWE-78
- NVD status
- Modified
- Published
- 2025-10-03
CVE-2025-60787 at NVD
24 known exploits for CVE-2025-60787
Proof-of-concept code and exploit modules indexed by Sploitus
CVE-2025-60787_PoC
CVE-2025-60787
CVE-2025-60787
CVE-2025-60787-MotionEye-RCE
CVE-2025-60787-POC
CVE-2025-60787
CVE-2025-60787
CVE-2025-60787-Detection-motionEye-RCE-via-Config-Injection
Exploit for Improper Input Validation in Motioneye_Project Motioneye
ffensive-playbook
ofensive-playbook
Exploit for OS Command Injection in Motioneye_Project Motioneye
π Vvveb CMS 1.0.5 Command Injection
Exploit for OS Command Injection in Motioneye_Project Motioneye
Exploit for OS Command Injection in Motioneye_Project Motioneye
Exploit for OS Command Injection in Motioneye_Project Motioneye
Exploit for OS Command Injection in Motioneye_Project Motioneye
π motionEye 0.43.1b4 Remote Command Injection
motionEye 0.43.1b4 - RCE
π motionEye 0.43.1b4 Remote Code Execution
π MotionEye Frontend 0.43.1b4 Command Injection
π MotionEye Frontend 0.43.1b4 Remote Code Execution
Exploit for CVE-2025-60787
Remote Code Execution Vulnerability in MotionEye Frontend (CVE-2025-60787)