A directory traversal issue was discovered in OpenSlides before 4.2.5. Files can be uploaded to OpenSlides meetings and organized in folders. The interface allows users to download a ZIP archive that contains all files in a folder and its subfolders. If an attacker specifies the title of a file or folder as a relative or absolute path (e.g., ../../../etc/passwd), the ZIP archive generated for download converts that title into a path. Depending on the extraction tool used by the user, this might overwrite files locally outside of the chosen directory.
Advisories
Source ID Title
EUVD EUVD EUVD-2025-7267 A directory traversal issue was discovered in OpenSlides before 4.2.5. Files can be uploaded to OpenSlides meetings and organized in folders. The interface allows users to download a ZIP archive that contains all files in a folder and its subfolders. If an attacker specifies the title of a file or folder as a relative or absolute path (e.g., ../../../etc/passwd), the ZIP archive generated for download converts that title into a path. Depending on the extraction tool used by the user, this might overwrite files locally outside of the chosen directory.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 27 Mar 2025 14:30:00 +0000

Type Values Removed Values Added
First Time appeared Openslides
Openslides openslides
Weaknesses CWE-22
CPEs cpe:2.3:a:openslides:openslides:*:*:*:*:*:*:*:*
Vendors & Products Openslides
Openslides openslides

Fri, 21 Mar 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 21 Mar 2025 06:00:00 +0000

Type Values Removed Values Added
Description A directory traversal issue was discovered in OpenSlides before 4.2.5. Files can be uploaded to OpenSlides meetings and organized in folders. The interface allows users to download a ZIP archive that contains all files in a folder and its subfolders. If an attacker specifies the title of a file or folder as a relative or absolute path (e.g., ../../../etc/passwd), the ZIP archive generated for download converts that title into a path. Depending on the extraction tool used by the user, this might overwrite files locally outside of the chosen directory.
Weaknesses CWE-24
References
Metrics cvssV3_1

{'score': 3, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:N/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-03-21T14:01:52.519Z

Reserved: 2025-03-21T00:00:00.000Z

Link: CVE-2025-30343

cve-icon Vulnrichment

Updated: 2025-03-21T14:01:47.961Z

cve-icon NVD

Status : Analyzed

Published: 2025-03-21T06:15:26.700

Modified: 2025-03-27T14:00:35.087

Link: CVE-2025-30343

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.