VYPR
High severity7.6NVD Advisory· Published Dec 19, 2025· Updated Jun 17, 2026

CVE-2025-67442

CVE-2025-67442

Description

EVE-NG 6.4.0-13-PRO is vulnerable to Directory Traversal. The /api/export interface allows authenticated users to export lab files. This interface lacks effective input validation and filtering when processing file path parameters submitted by users.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • EVE-NG/EVE-NG3 versions
    cpe:2.3:a:eve-ng:eve-ng:6.4.0-13:*:*:*:professional:*:*:*+ 2 more
    • cpe:2.3:a:eve-ng:eve-ng:6.4.0-13:*:*:*:professional:*:*:*
    • (no CPE)
    • (no CPE)range: 6.4.0-13-PRO

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.