CNNVD-202509-1389 Information

CNNVD ID

CNNVD-202509-1389

CVE-2025-10183

  • CNNVD Published: 2025-09-09

Description (Chinese)

TecCom TecConnect是德国TecCom公司的一款中间件。 TecCom TecConnect 4.1版本存在安全漏洞,该漏洞源于OpenMessaging webservice存在盲XXE注入,可能导致任意文件泄露。

Description (English)

TecCom TechConnect is an intermediate of the German company TecCom. There is a security loophole in TecCom TecConnect 4.1, which originates from the blind XXE injection of OpenMessaging Webservice, which may lead to the disclosure of any document.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

Tecnoteca

Published

2025-09-09

Last Modified

2026-02-24

References

https://blog.blacklanternsecurity.com/p/teccom-tecconnect-41-xml-external

Share on: