CVE-2025-8749
Path traversal vulnerability in MiR robot software via API requests
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.5EPSS 0.4%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
08 Aug 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Path Traversal vulnerability in API Endpoint in Mobile Industrial Robots (MiR) Software Versions prior to 3.0.0 on MiR Robots allows authenticated users to extract files from the robot file system via a crafted API request.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Affected products
Mobile Industrial Robots · MiR RobotsWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →