6.5
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
Description
MobSF is a mobile application security testing tool used. In version 4.4.0, an authenticated user who uploaded a specially prepared one.a, can write arbitrary files to any directory writable by the user of the MobSF process. This issue has been patched in version 4.4.1.
Basic Information
ID
CVE-2025-58162
Source
GitHub_M
Published
Sep 2, 2025 at 00:46
Affected Product
Vendor
MobSF
Product
Mobile-Security-Framework-MobSF
Version
= 4.4.0
Affected Versions
MobSF Mobile-Security-Framework-MobSF = 4.4.0