CNNVD-202510-3610 Information

CNNVD ID

CNNVD-202510-3610

CVE-2025-12247

  • CNNVD Published: 2025-10-27

Description (Chinese)

Hasleo Backup Suite是Hasleo公司的一款Windows备份和恢复软件。 Hasleo Backup Suite 5.2及之前版本存在代码问题漏洞,该漏洞源于组件HasleoImageMountService/HasleoBackupSuiteService存在未加引号的搜索路径,可能导致本地执行攻击。

Description (English)

Hasleo Backup Suite is a Windows backup and recovery software for Hasleo. There is a code gap in Hasleo Backup Suite 5.2 and earlier versions, which stems from the unquoted search path of the component HasleoImage MountService/HasleoBackPuiteService, which could lead to a local execution attack.

Hazard Level

Medium

Vulnerability Type

代码问题

Affected Vendor

Hasleo

Published

2025-10-27

Last Modified

2026-02-24

References

https://github.com/lakshayyverma/CVE-Discovery/blob/main/Halseo%20Backupservice.md https://github.com/lakshayyverma/CVE-Discovery/blob/main/Hasleo%20Backup%20Suite%20ImageMountService.md https://vuldb.com/?ctiid.329918 https://vuldb.com/?id.329918 https://vuldb.com/?submit.672548 https://vuldb.com/?submit.672549 https://www.easyuefi.com/backup-software/downloads/Hasleo_Backup_Suite_Free.exe

Patch

https://www.easyuefi.com/backup-software/backup-suite-free.html

Share on: