In Xerox FreeFlow Core version 8.0.4, an attacker can exploit a Path Traversal vulnerability to access unauthorized files on the server. This can lead to Remote Code Execution (RCE), allowing the attacker to run arbitrary commands on the system.
References
Configurations
History
18 Aug 2025, 18:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
14 Aug 2025, 16:19
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:xerox:freeflow_core:8.0.4:*:*:*:*:*:*:* | |
References | () https://securitydocs.business.xerox.com/wp-content/uploads/2025/08/Xerox-Security-Bulletin-025-013-for-Freeflow-Core-8.0.5.pdf - Vendor Advisory | |
First Time |
Xerox freeflow Core
Xerox |
|
Summary |
|
08 Aug 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-08-08 16:15
Updated : 2025-08-18 18:15
NVD link : CVE-2025-8356
Mitre link : CVE-2025-8356
CVE.ORG link : CVE-2025-8356
JSON object : View
Products Affected
xerox
- freeflow_core