CVE-2025-8909

Organization Portal System developed by WellChoose has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files.
Configurations

No configuration.

History

13 Aug 2025, 17:33

Type Values Removed Values Added
Summary
  • (es) Organization Portal System desarrollado por WellChoose tiene una vulnerabilidad de lectura arbitraria de archivos, que permite a atacantes remotos con privilegios regulares explotar Absolute Path Traversal para descargar archivos de sistema arbitrarios.

13 Aug 2025, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-13 09:15

Updated : 2025-08-13 17:33


NVD link : CVE-2025-8909

Mitre link : CVE-2025-8909

CVE.ORG link : CVE-2025-8909


JSON object : View

Products Affected

No product.

CWE
CWE-36

Absolute Path Traversal