Back to search
CVE-2025-6076
Published: Aug 2, 2025
Modified: Nov 3, 2025
PUBLISHED
Description
Partner Software's Partner Software application and Partner Web application do not sanitize files uploaded on the "reports" tab, allowing an authenticated attacker to upload a malicious file and compromise the device. By default, the software runs as SYSTEM, heightening the severity of the vulnerability.
| Vendor | Product | Versions |
|---|---|---|
Partner Software | Partner Web | affected 4.32 - < 4.32.2 |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now