Directory Traversal vulnerability in WebLaudos 24.2 (04) allows a remote attacker to obtain sensitive information via the id parameter.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 16 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.0387}

epss

{'score': 0.02887}


Mon, 14 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.02146}

epss

{'score': 0.0387}


Tue, 17 Jun 2025 19:00:00 +0000

Type Values Removed Values Added
First Time appeared Pixeon
Pixeon weblaudos
CPEs cpe:2.3:a:pixeon:weblaudos:24.2_\(04\):*:*:*:*:*:*:*
Vendors & Products Pixeon
Pixeon weblaudos

Mon, 02 Jun 2025 21:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-22
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 02 Jun 2025 17:45:00 +0000

Type Values Removed Values Added
Description Directory Traversal vulnerability in WebLaudos 24.2 (04) allows a remote attacker to obtain sensitive information via the id parameter.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-06-02T20:37:32.086Z

Reserved: 2025-03-11T00:00:00.000Z

Link: CVE-2025-27956

cve-icon Vulnrichment

Updated: 2025-06-02T20:37:26.812Z

cve-icon NVD

Status : Analyzed

Published: 2025-06-02T18:15:24.257

Modified: 2025-06-17T18:45:05.790

Link: CVE-2025-27956

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.