CVE-2025-65480
Severity CVSS v4.0:
Pending analysis
Type:
CWE-78
OS Command Injections
Publication date:
11/02/2026
Last modified:
12/02/2026
Description
An issue was discovered in Pacom Unison Client 5.13.1. Authenticated users can inject malicious scripts in the Report Templates which are executed when certain script conditions are fulfilled, leading to Remote Code Execution.
Impact
Base Score 3.x
8.80
Severity 3.x
HIGH



