Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-7081 | In eosphoros-ai/db-gpt version 0.6.0, the endpoint for uploading files is vulnerable to absolute path traversal. This vulnerability allows an attacker to upload arbitrary files to arbitrary locations on the target server. The issue arises because the `file_key` and `doc_file.filename` parameters are user-controllable, enabling the construction of paths outside the intended directory. This can lead to overwriting essential system files, such as SSH keys, for further exploitation. |
Github GHSA |
GHSA-hhw5-29f6-hf4x | DB-GPT Absolute Path Traversal vulnerability |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 17 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dbgpt
Dbgpt db-gpt |
|
| CPEs | cpe:2.3:a:dbgpt:db-gpt:0.6.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Dbgpt
Dbgpt db-gpt |
Thu, 20 Mar 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 20 Mar 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In eosphoros-ai/db-gpt version 0.6.0, the endpoint for uploading files is vulnerable to absolute path traversal. This vulnerability allows an attacker to upload arbitrary files to arbitrary locations on the target server. The issue arises because the `file_key` and `doc_file.filename` parameters are user-controllable, enabling the construction of paths outside the intended directory. This can lead to overwriting essential system files, such as SSH keys, for further exploitation. | |
| Title | Arbitrary File Write through Absolute Path Traversal in eosphoros-ai/db-gpt | |
| Weaknesses | CWE-36 | |
| References |
| |
| Metrics |
cvssV3_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: @huntr_ai
Published:
Updated: 2025-03-20T18:57:41.633Z
Reserved: 2024-11-04T22:58:01.931Z
Link: CVE-2024-10831
Updated: 2025-03-20T17:54:15.578Z
Status : Analyzed
Published: 2025-03-20T10:15:20.500
Modified: 2025-07-17T13:38:08.167
Link: CVE-2024-10831
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA