PT-2025-32306 · Microsoft+1 · Windows+1

Shawn Plowman

·

Published

2025-08-07

·

Updated

2025-08-07

·

CVE-2025-55077

CVSS v3.1

7.4

High

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Tyler Technologies ERP Pro 9 SaaS (affected versions not specified)
Description The software allows an authenticated user to escape the application and execute limited operating system commands within the remote Microsoft Windows environment with the privileges of the authenticated user. Tyler Technologies deployed hardened remote Windows environment settings to all customer environments as of 2025-08-01.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Incorrect Authorization

Exposure of Resource to Wrong Sphere

Weakness Enumeration

Related Identifiers

CVE-2025-55077

Affected Products

Erp-Pro
Windows