Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-25508 | WebITR developed by Uniong has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files. |
Solution
WebITR developed by Uniong has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files.
Workaround
No workaround given by the vendor.
Tue, 23 Sep 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:uniong:webitr:*:*:*:*:*:*:*:* |
Sat, 23 Aug 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Uniong
Uniong webitr |
|
| Vendors & Products |
Uniong
Uniong webitr |
Fri, 22 Aug 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 22 Aug 2025 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | WebITR developed by Uniong has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files. | |
| Title | Uniong|WebITR - Arbitrary File Reading through Path Traversal | |
| Weaknesses | CWE-36 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-08-22T13:30:26.939Z
Reserved: 2025-08-20T12:01:45.070Z
Link: CVE-2025-9259
Updated: 2025-08-22T13:30:23.328Z
Status : Analyzed
Published: 2025-08-22T12:15:34.990
Modified: 2025-11-06T22:05:52.717
Link: CVE-2025-9259
No data.
OpenCVE Enrichment
Updated: 2025-08-23T10:55:11Z
EUVD