CNNVD-202507-613 Information

CNNVD ID

CNNVD-202507-613

CVE-2025-7097

  • CNNVD Published: 2025-07-06

Description (Chinese)

Comodo Internet Security Premium是美国Comodo公司的一套主要针对互联网安全的计算机安全软件。 Comodo Internet Security Premium 12.3.4.8162版本存在命令注入漏洞,该漏洞源于对参数binary/params的错误操作导致os命令注入。

Description (English)

Comodo Internet Security Premium is a computer security software package for the United States company Comodo that focuses on Internet security. The version of Comodo Internet Security Premium 12.3.4.8162 contains a command-injection loophole, which results from an error in the binary/params parameter that led to the Os command-injection.

Hazard Level

Medium

Vulnerability Type

命令注入

Affected Vendor

科摩多

Published

2025-07-06

Last Modified

2026-02-24

References

https://vuldb.com/?id.315011 https://vuldb.com/?ctiid.315011 https://vuldb.com/?submit.603714 https://drive.google.com/file/d/1qnWarYsTSc5_sV6o8ULv0LBvGfKKXPxn/view?usp=sharing https://access.redhat.com/security/cve/cve-2025-7097

Patch

https://www.comodo.com/home/download/download.php?prod=cis

Share on: