Partner Software's Partner Software application and...
Unreviewed
Published
Aug 2, 2025
to the GitHub Advisory Database
•
Updated Aug 2, 2025
Description
Published by the National Vulnerability Database
Aug 2, 2025
Published to the GitHub Advisory Database
Aug 2, 2025
Last updated
Aug 2, 2025
Partner Software's Partner Software application and Partner Web application do not sanitize files uploaded on the "reports" tab, allowing an authenticated attacker to upload a malicious file and compromise the device. By default, the software runs as SYSTEM, heightening the severity of the vulnerability.
References