CNNVD-202601-3915 Information

CNNVD ID

CNNVD-202601-3915

CVE-2025-27379

  • CNNVD Published: 2026-01-22

Description (Chinese)

Altium Enterprise Server是美国Altium公司的一款本地化数据管理服务器。 Altium Enterprise Server 7.0.3版本存在安全漏洞,该漏洞源于BOM Viewer的Description字段存在存储型跨站脚本,可能导致执行任意JavaScript代码。

Description (English)

Altium Enterprise Server is a localized data management server for Altium, United States. Altium Enterprise Server version 7.0.3 contains a security loophole, which stems from the existence of a storage cross-site script in the Description field of BOM Viewer, which may result in the implementation of any JavaScript code.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Altium

Published

2026-01-22

Last Modified

2026-02-24

References

https://www.altium.com/platform/security-compliance/security-advisories

Patch

https://www.altium.com/products/downloads

Share on: