CVE-2025-9000
🟡 Monitoruj
Nieznana funkcja w Mechrevo Control Center GX umożliwia niekontrolowane wyszukiwanie ścieżek.
CVSS
7.0
EPSS
0.2%
Exploit
none
Vendor
mechrevo
Opis źródłowy (NVD)
A vulnerability was detected in Mechrevo Control Center GX V2 5.56.51.48. Impacted is an unknown function of the component reg File Handler. The manipulation results in uncontrolled search path. The attack needs to be approached locally. The attack requires a high level of complexity. The exploitability is considered difficult. The exploit is now public and may be used.
brak
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 7.0 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.2% |
| Opublikowano (NVD) | 2025-08-15 02:15:27 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-07 07:16:56 UTC |
Referencje
- https://drive.proton.me/urls/7QYSEW6734#H3N4fQ3mw6gX ([email protected]) [Broken Link]
- https://vuldb.com/cve/CVE-2025-9000 ([email protected])
- https://vuldb.com/submit/624903 ([email protected])
- https://vuldb.com/vuln/320029 ([email protected])
- https://vuldb.com/vuln/320029/cti ([email protected])
- https://vuldb.com/?submit.624903 (134c704f-9b21-4f2e-91b3-4a467353bcc0) [Third Party Advisory, VDB Entry]