CVE-2025-34518

IleviaEVE X1 Server firmware versions  4.7.18.0.eden contain a relative path traversal vulnerabilityinget_file_content.phpthat allows an attacker to read arbitrary files.Ilevia has declined to service this vulnerability, and recommends that customers not expose port 8080 to the internet.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
UNKNOWN
---
VulnCheckCNA
---
---
CISA-ADPADP
---
---