CVE-2025-30057 - Microsoft UHCRTFDoc Command Injection Vulnerability
CVE ID : CVE-2025-30057
Published : Aug. 27, 2025, 11:15 a.m. | 3 hours, 30 minutes ago
Description : In UHCRTFDoc, the filename parameter can be exploited to execute arbitrary code via command injection into the system() call in the ConvertToPDF function.
Severity: 9.4 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Aug. 27, 2025, 11:15 a.m. | 3 hours, 30 minutes ago
Description : In UHCRTFDoc, the filename parameter can be exploited to execute arbitrary code via command injection into the system() call in the ConvertToPDF function.
Severity: 9.4 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...