← voltar
CVE-2025-66449

ConvertX has Path Traversal that leads to Arbitrary File Write and Arbitrary Code Execution

CVSS 8.8 HIGHEPSS 0.7%CWE-22CWE-434CWE-73
Vexday Risk Score
21Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS 8.8EPSS 0.7%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
16 dez 2025Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
ConvertXis a self-hosted online file converter. In versions prior to 0.16.0, the endpoint `/upload` allows an authenticated user to write arbitrary files on the system, overwriting binaries and allowing code execution. The upload function takes `file.name` directly from user supplied data without doing any sanitization on the name thus allowing for arbitrary file write. This can be used to overwrite system binaries with ones provided from an attacker allowing full code execution. Version 0.16.0 contains a patch for the issue.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Produtos afetados
C4illin · ConvertX

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →