Command Injection Vulnerability in Tyler Technologies ERP Pro 9 SaaS
CVE-2025-55077
What is CVE-2025-55077?
An authenticated user of Tyler Technologies ERP Pro 9 SaaS can exploit a command injection vulnerability that allows them to escape the application and execute restricted operating system commands within the remote Microsoft Windows environment. This issue provides attackers with the ability to execute commands with the privileges of the authenticated user. In response, Tyler Technologies implemented hardened remote Windows environment settings to safeguard all customer environments starting from August 1, 2025.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
ERP Pro 9 SaaS 0 < 2025-08-01
ERP Pro 9 SaaS 2025-08-01
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
