Impact
BC Security Empire prior to version 6.7.1 allows authenticated operators to upload files without validating the multipart filename parameter. The lack of validation permits path traversal sequences, enabling an attacker to place files in arbitrary directories on the C2 server. By writing malicious files to privileged locations, an attacker can achieve code execution on the server, compromising confidentiality, integrity, and availability of the system.
Affected Systems
The vulnerability impacts BC Security Empire deployments running any release before 6.7.1. This includes all users of the standard C2 server where operators hold authentication credentials and have upload permissions.
Risk and Exploitability
The CVSS score of 8.7 classifies the flaw as a high‑severity issue. The EPSS score is below 1%, indicating a low likelihood of widespread exploitation at this time, and the vulnerability is not listed in the CISA KE be authenticated operators with access to the upload endpoint; the path traversal in the filename is the primary attack vector, allowing arbitrary file writes that can lead to remote code execution if the attacker can deploy executable payloads.
OpenCVE Enrichment