Security Advisory
CVE-2025-30057
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
In UHCRTFDoc, the filename parameter can be exploited to execute arbitrary code via command injection into the system() call in the ConvertToPDF function.