Deserialization Vulnerability in Topal Finanzbuchhaltung by Topal Solutions AG
CVE-2025-10363

10CRITICAL

Key Information:

Vendor
CVE Published:
6 October 2025

What is CVE-2025-10363?

A deserialization of untrusted data vulnerability in Topal Finanzbuchhaltung allows an attacker to execute arbitrary code remotely. This vulnerability affects version 10.1.5.20 and has been addressed in the newer release, version 11.2.12.00, enhancing the software's security posture. Users are strongly advised to update to the latest version to mitigate potential risks. For more details, refer to the official advisory and release notes.

Affected Version(s)

Topal Finanzbuchhaltung Windows 10.1.5.20

Topal Finanzbuchhaltung Windows 11.2.12.00

References

CVSS V4

Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-10363 : Deserialization Vulnerability in Topal Finanzbuchhaltung by Topal Solutions AG