Логотип exploitDog
bind:CVE-2025-61189
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-61189

Количество 2

Количество 2

nvd логотип

CVE-2025-61189

4 месяца назад

Jeecgboot versions 3.8.2 and earlier are affected by a path traversal vulnerability. The endpoint is /sys/comment/addFile. This vulnerability allows attackers to upload files with system-whitelisted extensions to the system directory /opt, instead of the /opt/upFiles directory specified by the web server.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-rqg5-4g9g-72mh

4 месяца назад

Jeecgboot versions 3.8.2 and earlier are affected by a path traversal vulnerability. The endpoint is /sys/comment/addFile. This vulnerability allows attackers to upload files with system-whitelisted extensions to the system directory /opt, instead of the /opt/upFiles directory specified by the web server.

CVSS3: 6.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-61189

Jeecgboot versions 3.8.2 and earlier are affected by a path traversal vulnerability. The endpoint is /sys/comment/addFile. This vulnerability allows attackers to upload files with system-whitelisted extensions to the system directory /opt, instead of the /opt/upFiles directory specified by the web server.

CVSS3: 6.3
0%
Низкий
4 месяца назад
github логотип
GHSA-rqg5-4g9g-72mh

Jeecgboot versions 3.8.2 and earlier are affected by a path traversal vulnerability. The endpoint is /sys/comment/addFile. This vulnerability allows attackers to upload files with system-whitelisted extensions to the system directory /opt, instead of the /opt/upFiles directory specified by the web server.

CVSS3: 6.3
0%
Низкий
4 месяца назад

Уязвимостей на страницу