Beveiligingsadvies

CVE-2025-67004

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-01-09 00:00:00
Laatst bijgewerkt 2026-01-23 18:51:03
Toegewezen door mitre
CVSS-score 6.5
Status PUBLISHED

Beschrijving

** Disputed ** An Information Disclosure vulnerability in CouchCMS 2.4 allow an Admin user to read arbitrary files via traversing directories back after back. It can Disclosure the source code or any other confidential information if weaponize accordingly. NOTE: A community member states that this is not a CouchCMS vulnerability and that if /\<file> is accessible it is a web-server configuration issue.