Unrated severityNVD Advisory· Published Oct 2, 2025· Updated Oct 2, 2025
Multiple vulnerabilities in AndSoft's e-TMS
CVE-2025-59772
Description
Cross-site scripting (XSS) vulnerability reflected in AndSoft's e-TMS v25.03. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending them a malicious URL. The relationship between parameter and assigned identifier is 'l, demo, demo2, TNTLOGIN, UO and SuppConn' parameters in '/clt/LOGINFRM_SIL.ASP'.
Affected products
2- AndSoft/e-TMSv5Range: v25.03 version
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.