TCMAN GIM Unrestricted File Upload Vulnerability Allowing Remote Code Execution

Vulnerability

A vulnerability allowing unrestricted file upload has been identified in TCMAN's GIM version 11. This issue enables an unauthenticated attacker to upload any file to the server, including malicious files that could be used for remote code execution.

Impact

Exploitation of this vulnerability could lead to remote code execution on the server where TCMAN GIM v11 is installed.

Remediation

The vulnerability has been fixed by the TCMAN team in version 1280.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.7
remediation
7.7
relevance
0.0
threat
0.1
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.