Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-27783

Опубликовано: 19 мар. 2025
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to arbitrary file write in train.py. This issue may lead to writing arbitrary files on the Applio server. It can also be used in conjunction with an unsafe deserialization to achieve remote code execution. As of time of publication, no known patches are available.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:applio:applio:*:*:*:*:*:*:*:*
Версия до 3.2.8-bugfix (включая)

EPSS

Процентиль: 84%
0.02137
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-22

EPSS

Процентиль: 84%
0.02137
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-22