Unrated severityNVD Advisory· Published Dec 5, 2025· Updated Dec 5, 2025
CVE-2025-65878
CVE-2025-65878
Description
The warehouse management system version 1.2 contains an arbitrary file read vulnerability. The endpoint /file/showImageByPath does not sanitize user-controlled path parameters. An attacker could exploit directory traversal to read arbitrary files on the server's file system. This could lead to the leakage of sensitive system information.
Affected products
1- warehouse management system/warehouse management systemdescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.