A vulnerability in the WebApl component of Mitel OpenScape Xpressions through V7R1 FR5 HF43 P913 could allow an unauthenticated attacker to conduct a path traversal attack due to insufficient input validation. A successful exploit could allow an attacker to read files from the underlying OS and obtain sensitive information.
Metrics
Affected Vendors & Products
References
History
Tue, 24 Jun 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 | |
| Metrics |
cvssV3_1
|
Mon, 23 Jun 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability in the WebApl component of Mitel OpenScape Xpressions through V7R1 FR5 HF43 P913 could allow an unauthenticated attacker to conduct a path traversal attack due to insufficient input validation. A successful exploit could allow an attacker to read files from the underlying OS and obtain sensitive information. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-06-23T00:00:00.000Z
Updated: 2025-06-24T17:59:30.150Z
Reserved: 2025-05-15T00:00:00.000Z
Link: CVE-2025-48026
Updated: 2025-06-24T13:47:09.497Z
Status : Awaiting Analysis
Published: 2025-06-23T20:15:28.007
Modified: 2025-06-24T18:15:25.070
Link: CVE-2025-48026
No data.