Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-28139 | A vulnerability in the WebApl component of Mitel OpenScape Xpressions through V7R1 FR5 HF43 P913 could allow an unauthenticated attacker to conduct a path traversal attack due to insufficient input validation. A successful exploit could allow an attacker to read files from the underlying OS and obtain sensitive information. |
Tue, 24 Jun 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 | |
| Metrics |
cvssV3_1
|
Mon, 23 Jun 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability in the WebApl component of Mitel OpenScape Xpressions through V7R1 FR5 HF43 P913 could allow an unauthenticated attacker to conduct a path traversal attack due to insufficient input validation. A successful exploit could allow an attacker to read files from the underlying OS and obtain sensitive information. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-06-24T17:59:30.150Z
Reserved: 2025-05-15T00:00:00.000Z
Link: CVE-2025-48026
Updated: 2025-06-24T13:47:09.497Z
Status : Deferred
Published: 2025-06-23T20:15:28.007
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-48026
No data.
OpenCVE Enrichment
Updated: 2025-06-27T14:10:57Z
EUVD