Security Advisory

CVE-2025-8344

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-07-31 01:32:05
Last updated 2025-07-31 14:33:44
Assigner VulDB
CVSS score 5.3
State PUBLISHED

Description

A vulnerability classified as critical has been found in openviglet shio up to 0.3.8. Affected is the function shStaticFileUpload of the file shio-app/src/main/java/com/viglet/shio/api/staticfile/ShStaticFileAPI.java. The manipulation of the argument filename leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.