216.73.216.197

CVE-2025-15024

· Published 14/05/2026 18:16 · Modified 14/05/2026 18:19

Labels: CVE-2025-15024 2026-05-14CVE-2025-15024CWE-94[email protected]

Essential information

Published
14/05/2026 18:16
Modified
14/05/2026 18:19
Author
Creator
CVSS
8.8 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CVSS metrics

Description

Improper Control of Generation of Code ('Code Injection') vulnerability in Yordam Information Technology Consulting, Training and Electronic Systems Industry and Trade Inc. Library Automation System allows Remote Code Inclusion. This issue affects Library Automation System: from v.19.5 before v.22.1.

NVD status

Status
Deferred — When a CVE is given this status the NVD does not plan analyze or re-analyze this CVE due to resource or other concerns.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
yordam / library automation system cpe:2.3:a:yordam:library_automation_system:19.5-*:*:*:*:*:*:*
yordam / library automation system cpe:2.3:a:yordam:library_automation_system:<22.1:*:*:*:*:*:*

References