S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Jul 17, 2025

CVE-2025-34300 Scanner

CVE-2025-34300 Scanner - Remote Code Execution vulnerability in SawtoothSoftware Lighthouse Studio

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, subdomain, ipv4
CostFree
2.9k
Times Used
continuous scan runs
3.7k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2025-34300
10.0
CVSScritical
Exploitable remotely over the internet · no authentication required.

A template injection vulnerability exists in Sawtooth Software’s Lighthouse Studio versions prior to 9.16.14 via the  ciwweb.pl http://ciwweb.pl/  Perl web application. Exploitation allows an unauthenticated attacker can execute arbitrary commands.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
Lighthouse Studioby Sawtooth Software
AFFECTED< 9.16.14SAFE ✓≥ 9.16.14
Updated Aug 22, 2026View on NVD →
Detail

SawtoothSoftware Lighthouse Studio is a sophisticated survey design platform widely used by businesses and researchers to collect and analyze complex survey data. Its intuitive user interface and powerful features allow users to create surveys ranging from simple questionnaires to intricate conjoint analysis studies. The software is deployed in a wide range of sectors, including market research, healthcare, and education, to gain insights that drive decision-making processes. Its ease of integration and extensive customization options make it a valuable tool for professionals seeking in-depth insights into customer and employee preferences. Lighthouse Studio by Sawtooth Software is highly regarded for its advanced analytics capabilities and powerful reporting tools, assisting users in data-driven decision-making.

This particular vulnerability, a Remote Code Execution (RCE), arises due to unsafe coding practices within the software's Perl CGI component, `ciwweb.pl`. The vulnerability stems from improper handling of user input, which is passed to the `eval` function without adequate sanitization. Attackers can exploit this flaw to execute arbitrary code on the server, thereby compromising the integrity and availability of the system. Such a vulnerability can be exploited pre-authentically, meaning attackers don't need prior access or credentials to target the system. The critical impact includes unauthorized access and potential data breaches, leading to significant security risks.

The technical details of the vulnerability involve the misuse of the `eval` function in Lighthouse Studio's CGI script, specifically in `ciwweb.pl`. The component `hid_Random_ACARAT` is the vulnerable endpoint that processes user input. Attackers can manipulate this input to inject malicious Perl code, which is subsequently executed by the server. This severe oversight in input validation allows remote attackers to gain control over server operations. Effectively, it showcases the dangers of using potentially unsafe functions like `eval` in web applications without stringent input validation.

If exploited by malicious actors, this vulnerability could result in unauthorized command execution, data theft, alteration or deletion, and potentially full control over the affected systems. Businesses relying on this software might face data integrity issues, financial losses, compliance violations, and reputational damage. Rapid exploitation could even facilitate further attacks, leveraging compromised systems to infiltrate wider networks.

REFERENCES

Solution Advice
  • Upgrade SawtoothSoftware Lighthouse Studio to version 9.16.14 or later to mitigate this vulnerability.
  • Ensure all input fields are validated and sanitized to prevent code injection exploits.
  • Implement security mechanisms to detect and block unauthorized attempts to exploit this vulnerability.
  • Regularly audit and test application code for potential vulnerabilities and unsafe functions.
  • Consider restricting access to the CGI components using network-level controls as a precautionary measure.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.