The TRMTracker web application is vulnerable to LDAP injection attack potentially allowing an attacker to inject code into a query and execute remote commands that can read and update data on the website.
Metrics
Affected Vendors & Products
References
History
Tue, 25 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 25 Mar 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The TRMTracker web application is vulnerable to LDAP injection attack potentially allowing an attacker to inject code into a query and execute remote commands that can read and update data on the website. | |
| Weaknesses | CWE-90 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Hitachi Energy
Published: 2025-03-25T12:46:08.184Z
Updated: 2025-03-25T13:07:52.198Z
Reserved: 2025-03-04T11:40:47.755Z
Link: CVE-2025-27631
Updated: 2025-03-25T13:07:42.610Z
Status : Awaiting Analysis
Published: 2025-03-25T13:15:40.947
Modified: 2025-03-27T16:45:46.410
Link: CVE-2025-27631
No data.