Critical severity9.1NVD Advisory· Published Sep 29, 2025· Updated Jun 17, 2026
CVE-2025-48006
CVE-2025-48006
Description
Improper restriction of XML external entity reference issue exists in DataSpider Servista 4.4 and earlier. If a specially crafted request is processed, arbitrary files on the file system where the server application for the product is installed may be read, or a denial-of-service (DoS) condition may occur.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: <=4.4
- Range: <=4.4
- Saison Technology Co.,Ltd./DataSpider Servistav5Range: 4.4 and earlier
Patches
Vulnerability mechanics
References
2- jvn.jp/en/jp/JVN23423519/nvdThird Party Advisory
- www.hulft.com/application/files/1217/5885/0217/information_20250926.pdfnvdThird Party Advisory
News mentions
0No linked articles in our index yet.