CVE-2025-65287
4.3
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD
Description
An unauthenticated directory traversal vulnerability in cgi-bin/upload.cgi in SNMP Web Pro 1.1 allows a remote attacker to read arbitrary files. The CGI concatenates the user-supplied params directly onto the base path (/var/www/files/userScript/) using memcpy + strcat without validation or canonicalization, enabling ../ sequences to escape the intended directory. The download branch also echoes the unsanitized params into Content-Disposition, introducing header-injection risk.
Affected (1)
Products: Cdpenergy: Snmp Web Pro Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.1 |
| Running on/with | Platform Versions |
|---|---|
Cdpenergy Snmp Web Pro | All versions |
References (1)
Timeline
No history available yet.