CVE 7.2 HIGH

Arbitrary File Upload in Narkom Communication Technologies’ Pyxis Signage_CVE-2025-0645

7.2 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Description

Unrestricted Upload of File with Dangerous Type vulnerability in Narkom Communication and Software Technologies Trade Ltd. Co. Pyxis Signage allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Pyxis Signage: through 31012025.

Basic Information

ID CVE-2025-0645
Source TR-CERT
Published Nov 20, 2025 at 13:33
Modified Nov 20, 2025 at 19:33

Affected Product

Vendor Narkom Communication and Software Technologies Trade Ltd. Co.
Product Pyxis Signage
Affected Versions Narkom Communication and Software Technologies Trade Ltd. Co. Pyxis Signage 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.