CVE-2025-34508
17.06.2025, 15:15
A path traversal vulnerability exists in the file dropoff functionality of ZendTo versions 6.15-7 and prior. This could allow a remote, authenticated attacker to retrieve the files of other ZendTo users, retrieve files on the host system, or cause a denial of service.
Awaiting analysis
This vulnerability is currently awaiting analysis.