CVE-2025-41723

Publication date

2025-10-22 07:01:09

Family

CERTVDE

State

PUBLISHED

Description

The importFile SOAP method is vulnerable to a directory traversal attack. An unauthenticated remote attacker bypass the path restriction and upload files to arbitrary locations.