Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-9918

Опубликовано: 11 сент. 2025
Источник: nvd
EPSS Низкий

Описание

A Path Traversal vulnerability in the archive extraction component in Google SecOps SOAR Server (versions 6.3.54.0, 6.3.53.2, and all prior versions) allows an authenticated attacker with permissions to import Use Cases to achieve Remote Code Execution (RCE) via uploading a malicious ZIP archive containing path traversal sequences.

EPSS

Процентиль: 59%
0.0039
Низкий

Дефекты

CWE-22

Связанные уязвимости

github
около 1 месяца назад

A Path Traversal vulnerability in the archive extraction component in Google SecOps SOAR Server (versions 6.3.54.0, 6.3.53.2, and all prior versions) allows an authenticated attacker with permissions to import Use Cases to achieve Remote Code Execution (RCE) via uploading a malicious ZIP archive containing path traversal sequences.

EPSS

Процентиль: 59%
0.0039
Низкий

Дефекты

CWE-22