CVE-2025-58464

CWE-233 documents3 sources
Severity
7.8HIGH
EPSS
0.1%
top 82.95%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 7

Description

A relative path traversal vulnerability has been reported to affect QuMagie. If a remote attacker, they can then exploit the vulnerability to read the contents of unexpected files or system data. We have already fixed the vulnerability in the following version: QuMagie 2.7.3 and later

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:N

Affected Packages2 packages

CVEListV5qnap_systems_inc./qumagie2.7.x2.7.3
NVDqnap/qumagie2.7.02.7.3

🔴Vulnerability Details

2
GHSA
GHSA-p9v7-8x2v-h926: A relative path traversal vulnerability has been reported to affect QuMagie2025-11-07
CVEList
QuMagie2025-11-07
CVE-2025-58464 (HIGH CVSS 7.8) | A relative path traversal vulnerabi | cvebase.io