CVE-2025-66744

In Yonyou YonBIP v3 and before, the LoginWithV8 interface in the series data application service system is vulnerable to path traversal, allowing unauthorized access to sensitive information within the system
Configurations

No configuration.

History

12 Jan 2026, 17:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-22
References () https://github.com/iSee857/YonYouBip-path-travelĀ - () https://github.com/iSee857/YonYouBip-path-travelĀ -

09 Jan 2026, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-09 17:15

Updated : 2026-01-12 17:15


NVD link : CVE-2025-66744

Mitre link : CVE-2025-66744

CVE.ORG link : CVE-2025-66744


JSON object : View

Products Affected

No product.

CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')