A vulnerability was found in Artica Pandora ITSM 5.0.105. It has been declared as critical. This vulnerability affects unknown code. The manipulation of the argument chromium_path leads to command injection.

This vulnerability was named CVE-2025-4678. The attack can be initiated remotely. There is no exploit available.

It is recommended to upgrade the affected component.