Security Advisory

CVE-2025-15227

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-29 07:10:24
Last updated 2025-12-29 14:31:48
Assigner twcert
State PUBLISHED

Description

BPMFlowWebkit developed by WELLTEND TECHNOLOGY has a Arbitrary File Read vulnerability, allowing unauthenticated remote attackers to exploit Absolute Path Traversal to download arbitrary system files.