← Back to CVE search

CVE-2018-25365

PCViewer

Description

PCViewer vt1000 contains a directory traversal vulnerability that allows unauthenticated attackers to read arbitrary files by submitting relative path sequences in GET requests. Attackers can use path traversal sequences ../../../../../../../../../../../../etc/passwd to access sensitive system files outside the intended directory.

CVSS 7.5EPSS 0.7849999999999999%Risk 0.8
View source
Published
2026-05-25 15:16:19
Affected versions
unknown
Type
Other
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N