Security Advisory
CVE-2025-41758
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
A low-privileged remote attacker can exploit an arbitrary file write vulnerability in the wwupload.cgi endpoint. Due to path traversal this can lead to overwriting arbitrary files on the device and achieving a full system compromise.