Security Advisory

CVE-2025-13284

9.8
CRITICAL

Vulnerability Description

ThinPLUS developed by ThinPLUS has an OS Command Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary OS commands and execute them on the server.
Published Date November 17, 2025
Official Source NIST NVD Advisory