Unrated severityNVD Advisory· Published Oct 2, 2025· Updated Oct 2, 2025
Multiple vulnerabilities in AndSoft's e-TMS
CVE-2025-59740
Description
Operating system command injection vulnerability in AndSoft's e-TMS v25.03. This vulnerability allows an attacker to execute operating system commands on the server by sending a POST request. The relationship between parameter and assigned identifier is a 'm' parameter in '/clt/LOGINFRM_CAT.ASP'.
Affected products
2- AndSoft/e-TMSv5Range: v25.03 version
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.