Description

Output Messenger before 2.0.63 was vulnerable to a directory traversal attack through improper file path handling. By using ../ sequences in parameters, attackers could access sensitive files outside the intended directory, potentially leading to configuration leakage or arbitrary file access.

INFO

Published Date :

2025-05-05T00:00:00.000Z

Last Modified :

2025-10-21T22:55:17.487Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2025-27920 vulnerability.

Vendors Products
Srimax
  • Output Messenger

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact