CVE-2025-40664 Information

Description

Missing authentication vulnerability in TCMAN GIM v11. This allows an unauthenticated attacker to access the resources /frmGestionUser.aspx/GetData /frmGestionUser.aspx/updateUser and /frmGestionUser.aspx/DeleteUser.

Reference

https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-tcman-gim-0

Share on: