Description
A vulnerability in the WebApl component of Mitel OpenScape Xpressions through V7R1 FR5 HF43 P913 could allow an unauthenticated attacker to conduct a path traversal attack due to insufficient input validation. A successful exploit could allow an attacker to read files from the underlying OS and obtain sensitive information.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-28139 | A vulnerability in the WebApl component of Mitel OpenScape Xpressions through V7R1 FR5 HF43 P913 could allow an unauthenticated attacker to conduct a path traversal attack due to insufficient input validation. A successful exploit could allow an attacker to read files from the underlying OS and obtain sensitive information. |
References
History
Tue, 24 Jun 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 | |
| Metrics |
cvssV3_1
|
Mon, 23 Jun 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability in the WebApl component of Mitel OpenScape Xpressions through V7R1 FR5 HF43 P913 could allow an unauthenticated attacker to conduct a path traversal attack due to insufficient input validation. A successful exploit could allow an attacker to read files from the underlying OS and obtain sensitive information. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-06-24T17:59:30.150Z
Reserved: 2025-05-15T00:00:00.000Z
Link: CVE-2025-48026
Updated: 2025-06-24T13:47:09.497Z
Status : Awaiting Analysis
Published: 2025-06-23T20:15:28.007
Modified: 2025-06-24T18:15:25.070
Link: CVE-2025-48026
No data.
OpenCVE Enrichment
Updated: 2025-06-27T14:10:57Z
Weaknesses
EUVD