8.7
/ 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N/E:P/S:N/AU:Y/V:D/RE:M/U:Green
Description
An unauthenticated attacker can exploit this vulnerability by manipulating URL to achieve arbitrary file read access.This issue affects Valmet DNA Web Tools: C2022 and older.
AI Analysis
Arbitrary file read access vulnerability in Valmet DNA Web Tools via URL manipulation
Basic Information
ID
CVE-2025-15577
Source
NCSC-FI
Published
Feb 12, 2026 at 06:04
Affected Product
Vendor
Valmet
Product
Valmet DNA Web Tools
Affected Versions
Valmet Valmet DNA Web Tools 0
CWE Classification
AI Assessment
AI Score
8.7 / 10
AI Severity
High
Vendor
Valmet
Product
Valmet DNA Web Tools
Version
C2022 and older