cbcvebase.
CVE-2025-30170
published 2025-05-22

CVE-2025-30170: Exposure of file path, file size or file existence vulnerabilities in ASPECT provide attackers access to file system information if session administrator…

PriorityP431medium5.5CVSS 3.1
AVNACLPRHUINSUCHILAN
EPSS
0.25%
16.8th percentile
Exposure of file path, file size or file existence vulnerabilities in ASPECT provide attackers access to file system information if session administrator credentials become compromised. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03.

Affected

3 ranges
VendorProductVersion rangeFixed in
abbaspect-enterprise<= 3.08.03
abbmatrix_series<= 3.08.03
abbnexus_series<= 3.08.03

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:N
nvdv4.05.9MEDIUMCVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:N/AU:N/R:U/V:C/RE:X/U:X
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.