CVE-2025-22926
03.04.2025, 14:15
An issue in OS4ED openSIS v8.0 through v9.1 allows attackers to execute a directory traversal by sending a crafted POST request to /Modules.php?modname=messaging/Inbox.php&modfunc=save&filename.
Vendor | Product | Version |
---|---|---|
os4ed | opensis | 8.0 ≤ 𝑥 ≤ 9.1 |
𝑥
= Vulnerable software versions