CNNVD-202511-2665 Information

CNNVD ID

CNNVD-202511-2665

CVE-2025-12740

  • CNNVD Published: 2025-11-24

Description (Chinese)

Google Cloud Looker是美国谷歌(Google)公司的一种在线工具,用于将数据转换为可定制的信息丰富的报告和仪表板。 Google Cloud Looker存在安全漏洞,该漏洞源于IBM DB2驱动程序参数过滤不足,可能导致执行恶意命令。

Description (English)

Google Cloud Loker is an online tool for translating data into customized information-rich reporting and dashboards by Google. There is a security loophole in Google Cloud Loker, which stems from inadequate filtering of IBM DB2 driver parameters, which may lead to the execution of malicious orders.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

谷歌

Published

2025-11-24

Last Modified

2026-02-24

References

https://cloud.google.com/support/bulletins#gcp-2025-052 https://access.redhat.com/security/cve/cve-2025-12740

Patch

https://cloud.google.com/support/bulletins#gcp-2025-052

Share on: