CVE 7.1 HIGH

Uniong|WebITR – Arbitrary File Reading through Path Traversal_CVE-2025-9258

7.1 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

Description

WebITR developed by Uniong has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files.

Basic Information

ID CVE-2025-9258
Source twcert
Published Aug 22, 2025 at 11:43

Affected Product

Vendor Uniong
Product WebITR
Affected Versions Uniong WebITR 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.