Critical severity9.4NVD Advisory· Published Aug 25, 2025· Updated Apr 15, 2026
CVE-2025-53120
CVE-2025-53120
Description
A path traversal vulnerability in unauthenticated upload functionality allows a malicious actor to upload binaries and scripts to the server’s configuration and web root directories, achieving remote code execution on the Unified PAM server.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.