CNNVD-202510-784 Information

CNNVD ID

CNNVD-202510-784

CVE-2025-60962

  • CNNVD Published: 2025-10-06

Description (Chinese)

EndRun Technologies Sonoma D12 Network Time Server是美国EndRun Technologies公司的一款时间同步设备。 EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.00版本存在安全漏洞,该漏洞源于容易受到OS命令注入攻击,可能导致敏感信息泄露。

Description (English)

EndRun Technologies Sonoma D12 Network Times Server is a time-synchronized device of the United States company EndRun Technologies. EndRun Technologies Sonoma D12 Network Time Server (GPS) version F/W 6010-007-000 Ver 4.00 contains a security loophole, which stems from its vulnerability to an OS-ordered injection, which may lead to the disclosure of sensitive information.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

EndRun Technologies

Published

2025-10-06

Last Modified

2026-02-24

References

http://endrun.com http://sonoma.com https://xdiv-sec.github.io/vulnerability-research/advisories/2025-10-03-sonoma-d12

Share on: