CVE-2025-69612

A path traversal vulnerability exists in TMS Management Console (version 6.3.7.27386.20250818) from TMS Global Software. The "Download Template" function in the profile dashboard does not neutralize directory traversal sequences (../) in the filePath parameter, allowing authenticated users to read arbitrary files, such as the server's Web.config.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:tmsglobalsoft:tms_management_console:*:*:*:*:*:*:*:*

History

05 Jul 2026, 02:17

Type Values Removed Values Added
References
  • {'url': 'http://tms.com', 'tags': ['Not Applicable'], 'source': 'cve@mitre.org'}

17 Jun 2026, 10:00

Type Values Removed Values Added
References () https://github.com/Cr0wld3r/CVE-2025-69612/blob/main/PoC.md - Third Party Advisory, Exploit () https://github.com/Cr0wld3r/CVE-2025-69612/blob/main/PoC.md - Exploit, Third Party Advisory
Summary
  • (es) Una vulnerabilidad de salto de ruta existe en TMS Management Console (versión 6.3.7.27386.20250818) de TMS Global Software. La función 'Download Template' en el panel de control del perfil no neutraliza las secuencias de salto de directorio (../) en el parámetro filePath, lo que permite a los usuarios autenticados leer archivos arbitrarios, como el Web. config del servidor.

03 Feb 2026, 14:06

Type Values Removed Values Added
CPE cpe:2.3:a:tmsglobalsoft:tms_management_console:*:*:*:*:*:*:*:*
References () http://tms.com - () http://tms.com - Not Applicable
References () https://github.com/Cr0wld3r/CVE-2025-69612/blob/main/PoC.md - () https://github.com/Cr0wld3r/CVE-2025-69612/blob/main/PoC.md - Third Party Advisory, Exploit
References () https://tmsglobalsoft.com/ - () https://tmsglobalsoft.com/ - Product
First Time Tmsglobalsoft
Tmsglobalsoft tms Management Console

22 Jan 2026, 18:16

Type Values Removed Values Added
CWE CWE-22
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

22 Jan 2026, 16:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-22 16:16

Updated : 2026-07-05 02:17


NVD link : CVE-2025-69612

Mitre link : CVE-2025-69612

CVE.ORG link : CVE-2025-69612


JSON object : View

Products Affected

tmsglobalsoft

  • tms_management_console
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')