Impact
A path traversal flaw exists in the Upload function of FileTool.java in SonicCloudOrg sonic-server. By manipulating the Type argument in the file upload request the adversary can cause the server to write files to arbitrary paths. The consequence is that an attacker could overwrite critical configuration files or store malicious code, thereby exposing the system to further compromise or data exfiltration. The vulnerability is reported as remotely exploitable and a public proof‑of‑concept already exists.
Affected Systems
The flaw is present in SonicCloudOrg sonic-server versions up to and including 2.0.0. No later releases are referenced in the advisory.
Risk and Exploitability
The CVSS score of 5.3 places the vulnerability in the medium severity band. EPSS is not available and the flaw is not listed in the CISA KEV catalog. Because the attack vector is remote and a public exploit is available, the risk to environments running the affected version is considered moderate to high pending patch or mitigation.
OpenCVE Enrichment