Security Advisory

CVE-2025-54926

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-08-20 13:48:02
Last updated 2025-08-20 17:21:50
Assigner schneider
CVSS score 7.2
State PUBLISHED

Description

CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause remote code execution when an authenticated attacker with admin privileges uploads a malicious file over HTTP which then gets executed.