CVE-2025-60357: SQL Injection
Published Jul 17, 2026
·Updated
AhnLab EPP Management v1.0.14.32-6249 was discovered to contain a NoSQL injection vulnerability via the eventlog/agentEvent/list endpoint.
Affected Software
2 affected components
AhnLab EPP Management=1.0.14.32-6249
AhnLab EPP Management=1.0.14.32-6249
Event History
Jul 17, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:17 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-60357?
The severity of CVE-2025-60357 is rated high with a CVSS score of 8.1.
2
What type of vulnerability is CVE-2025-60357?
CVE-2025-60357 is categorized as a NoSQL injection vulnerability.
3
How can I mitigate CVE-2025-60357?
To mitigate CVE-2025-60357, ensure input validation and sanitize user input for the affected endpoint.
4
Which software is affected by CVE-2025-60357?
CVE-2025-60357 affects AhnLab EPP Management version 1.0.14.32-6249.
5
What endpoint is associated with CVE-2025-60357?
CVE-2025-60357 is associated with the eventlog/agentEvent/list endpoint.