CVE-2025-69828

Critical severity, CVSS 10.0. EPSS: 0.6% chance of exploitation in the next 30 days.

File Upload vulnerability in TMS Global Software TMS Management Console v.6.3.7.27386.20250818 allows a remote attacker to execute arbitrary code via the Logo upload in /Customer/AddEdit

Published 2026-01-22. Last modified 2026-06-17.