CNNVD-202601-1209 Information

CNNVD ID

CNNVD-202601-1209

CVE-2025-66838

  • CNNVD Published: 2026-01-07

Description (Chinese)

Software ARIS是德国Software公司的一个业务流程分析工具。 Software ARIS 10.0.23.0.3587512及之前版本存在安全漏洞,该漏洞源于文件上传功能缺乏速率限制,可能导致资源耗尽。

Description (English)

Software ARIS is a business process analysis tool for Software in Germany. There is a security loophole in Software ARIS 10.2.2.3.0.358712 and earlier versions, which stems from the lack of speed limits for document uploading, which may lead to depletion of resources.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Software

Published

2026-01-07

Last Modified

2026-02-24

References

https://github.com/saykino/CVE-2025-66838/ https://www.softwareag.com/ https://access.redhat.com/security/cve/cve-2025-66838

Share on: