Unrated severityNVD Advisory· Published Oct 2, 2025· Updated Oct 2, 2025
Multiple vulnerabilities in AndSoft's e-TMS
CVE-2025-59743
Description
SQL injection vulnerability in AndSoft's e-TMS v25.03. This vulnerability could allow an attacker to retrieve, create, update, and delete databases by sending a POST request. The relationship between parameter and assigned identifier is a 'SessionID' cookie in '/inc/connect/CONNECTION.ASP'.
Affected products
2- AndSoft/e-TMSv5Range: v25.03 version
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.