Beveiligingsadvies

CVE-2025-4377

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-05-09 05:12:59
Laatst bijgewerkt 2025-05-09 13:22:16
Toegewezen door NCSC-FI
CVSS-score 8.3
Status PUBLISHED

Beschrijving

Improper Limitation of a Pathname caused a Path Traversal vulnerability in Sparx Systems Pro Cloud Server. This vulnerability is present in logview.php and it allows reading arbitrary files on the filesystem.  Logview is accessible on Pro Cloud Server Configuration interface. This issue affects Pro Cloud Server: earlier than 6.0.165.