On a client with a non-admin user, a script can be integrated into a report. The reports could later be executed on the BRAIN2 server with administrator rights.
References
Configurations
No configuration.
History
23 Jun 2025, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-06-23 13:15
Updated : 2025-06-23 20:16
NVD link : CVE-2025-6512
Mitre link : CVE-2025-6512
CVE.ORG link : CVE-2025-6512
JSON object : View
Products Affected
No product.
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')