CVE-2025-5243
Severity CVSS v4.0:
Pending analysis
Type:
CWE-78
OS Command Injections
Publication date:
24/07/2025
Last modified:
05/06/2026
Description
Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an OS Command (&#39;OS Command Injection&#39;) vulnerability in SMG Software Information Portal allows Code Injection, Upload a Web Shell to a Web Server, Code Inclusion.<br />
<br />
This issue affects Information Portal: before 13.06.2025.
Impact
Base Score 3.x
10.00
Severity 3.x
CRITICAL



