AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-5243

CRITICAL · CVSS 10 EPSS 1.55%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-07-24 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 10.0. See the original NVD description below for full technical details.

CVE
CVE-2025-5243
Severity
CRITICAL
CVSS
10
EPSS
1.55%

Original NVD Description

Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in SMG Software Information Portal allows Code Injection, Upload a Web Shell to a Web Server, Code Inclusion. This issue affects Information Portal: before 13.06.2025.