Security Advisory

CVE-2025-27937

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-04-27 23:56:55
Last updated 2025-04-28 15:01:58
Assigner jpcert
CVSS score 6.5
State PUBLISHED

Description

Quick Agent V3 and Quick Agent V2 contain an issue with improper limitation of a pathname to a restricted directory ('Path Traversal'). If exploited, an arbitrary file in the affected product may be obtained by a remote attacker who can log in to the product.