CVE-2025-2305 - CERT CVE
ID CVE-2025-2305
Sažetak A Path traversal vulnerability in the file download functionality was identified. This vulnerability allows unauthenticated users to download arbitrary files, in the context of the application server, from the Linux server.
Reference
CVSS
Base: 8.6
Impact: 4.0
Exploitability:3.9
Pristup
VektorSloženostAutentikacija
NETWORK LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
HIGH NONE NONE
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Zadnje važnije ažuriranje 16-05-2025 - 14:42
Objavljeno 16-05-2025 - 13:15