Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-2305

Опубликовано: 16 мая 2025
Источник: nvd
CVSS3: 8.6
EPSS Низкий

Описание

A Path traversal vulnerability in the file download functionality was identified. This vulnerability allows unauthenticated users to download arbitrary files, in the context of the application server, from the Linux server.

EPSS

Процентиль: 38%
0.00168
Низкий

8.6 High

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 8.6
github
9 месяцев назад

A Path traversal vulnerability in the file download functionality was identified. This vulnerability allows unauthenticated users to download arbitrary files, in the context of the application server, from the Linux server.

EPSS

Процентиль: 38%
0.00168
Низкий

8.6 High

CVSS3

Дефекты

CWE-20