VYPR

Up.Time Monitoring Station

by Idera

CVEs (1)

  • CVE-2025-34121CriJul 16, 2025
    risk 0.70cvss epss 0.81

    An unauthenticated arbitrary file upload vulnerability exists in Idera Up.Time Monitoring Station versions up to and including 7.2. The `wizards/post2file.php` script accepts arbitrary POST parameters, allowing attackers to upload crafted PHP files to the webroot. Successful…