Security Advisory

CVE-2025-9639

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-08-29 03:39:35
Last updated 2025-08-29 16:25:37
Assigner twcert
CVSS score 8.7
State PUBLISHED

Description

The QbiCRMGateway developed by Ai3 has an Arbitrary File Reading vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.