cbcvebase.
CVE-2025-30169
published 2025-05-22

CVE-2025-30169: File upload and execute vulnerabilities in ASPECT allow PHP script injection if session administrator credentials become compromised. This issue affects…

medium6CVSS 4.0
AVNACLATPPRHUINVCLVIHVAHSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSNAUNRUVCREXUX
File upload and execute vulnerabilities in ASPECT allow PHP script injection if session administrator credentials become compromised. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03.

Affected

3 ranges
VendorProductVersion rangeFixed in
abbaspect-enterprise<= 3.08.03
abbmatrix_series<= 3.08.03
abbnexus_series<= 3.08.03