PT-2025-28118 · Unknown · Threatsonar Anti-Ransomware

Carson Wang

·

Published

2025-07-07

·

Updated

2025-07-11

·

CVE-2025-7145

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: ThreatSonar Anti-Ransomware (affected versions not specified)
Description: The issue allows remote attackers with intermediate privileges to inject arbitrary OS commands and execute them on the server, gaining administrative access to the remote host. This is due to an OS Command Injection vulnerability in the product.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

OS Command Injection

Weakness Enumeration

Related Identifiers

BDU:2026-00303
CVE-2025-7145

Affected Products

Threatsonar Anti-Ransomware