CNNVD-202510-337 Information
Oct 02, 2025
cve
CNNVD ID
CNNVD-202510-337
Related CVE
- CNNVD Published: 2025-10-02
Description (Chinese)
AndSoft e-TMS是西班牙AndSoft公司的一款物流管理软件。 AndSoft e-TMS 25.03版本存在命令注入漏洞,该漏洞源于对文件/clt/LOGINFRM_DJO.ASP中参数m的错误操作,可能导致操作系统命令注入攻击。
Description (English)
AndSoft e-TMS is a logistics management software for AndSoft in Spain. AndSoft e-TMS 25.03 has a command-injecting loophole, which results from an error in the parameters m in the file/clt/LOGINFRM DJO.ASP, which may result in an operational system command-injection attack.
Hazard Level
Low
Vulnerability Type
命令注入
Affected Vendor
AndSoft
Published
2025-10-02
Last Modified
2026-02-24
References
Patch
https://andsoft.es/es/solucio-1/menu-1/caracteristicas.html
Share on: