CNNVD-202510-3205 Information

CNNVD ID

CNNVD-202510-3205

CVE-2025-54964

  • CNNVD Published: 2025-10-23

Description (Chinese)

BAE Systems SOCET GXP是美国BAE Systems公司的一款高端地理信息影像分析与测绘软件。 BAE Systems SOCET GXP 4.6.0.2之前版本存在安全漏洞,该漏洞源于攻击者可注入任意可执行文件,可能导致权限提升或远程命令执行。

Description (English)

BAE Systems SOCET GXP is a high-end geographic information image analysis and mapping software for BAE Systems, United States. The previous version of BAE Systems SOCET GXP 4.6.0.2 had a security loophole, which stemmed from the fact that the assailant could inject an arbitrary enforceable document, which could lead to an increase in authority or a remote order execution.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

BAE Systems

Published

2025-10-23

Last Modified

2026-02-24

References

https://www.baesystems.com/en-us/product/geospatial-exploitation-products https://www.geospatialexploitationproducts.com/content/socet-gxp/vulnerabilities-disclosure/#cve-2025-54964 https://access.redhat.com/security/cve/cve-2025-54964

Patch

https://www.geospatialexploitationproducts.com/content/socet-gxp/vulnerabilities-disclosure/#cve-2025-54963

Share on: