216.73.216.6

CVE-2025-13284

· Published 17/11/2025 04:15 · Modified 18/11/2025 14:06

Labels: CVE-2025-13284 2025-11-17CVE-2025-13284CWE-78[email protected]

Essential information

Published
17/11/2025 04:15
Modified
18/11/2025 14:06
Author
Creator
CVSS
9.3 CRITICAL (v3) 9.3 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

ThinPLUS developed by ThinPLUS has an OS Command Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary OS commands and execute them on the server.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
[email protected]
NVD
View on NVD

References