CNNVD-202509-3698 Information

CNNVD ID

CNNVD-202509-3698

CVE-2025-9588

  • CNNVD Published: 2025-09-23

Description (Chinese)

Iron Mountain enVision是美国Iron Mountain公司的一款文档归档管理的软件。 Iron Mountain enVision 250563之前版本存在操作系统命令注入漏洞,该漏洞源于对特殊元素中和不当,可能导致OS命令注入。

Description (English)

Iron Mountain enVision is a software for the archiving of files by the American company Iron Mountain. The previous version of the Iron Mountain enVision 250563 had a loophole in the operating system, which originated in the misalignment of special elements and could lead to the injection of an OS command.

Hazard Level

Low

Vulnerability Type

操作系统命令注入

Affected Vendor

Iron Mountain

Published

2025-09-23

Last Modified

2026-02-24

References

https://www.usom.gov.tr/bildirim/tr-25-0285

Patch

https://www.ironmountain.com/tr-tr/services/insight-digital-experience-platform

Share on: