CVE-2025-54944
EUVD-2025-2625730.08.2025, 04:15
An unrestricted upload of file with dangerous type vulnerability in SUNNET Corporate Training Management System before 10.11 allows remote attackers to write malicious code in a specific file, which may lead to arbitrary code execution.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sun.net | ehrd_ctms | 𝑥 < 10.11 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References