Description

EzGED3 3.5.0 contains an unauthenticated arbitrary file read vulnerability due to improper access control and insufficient input validation in a script exposed via the web interface. A remote attacker can supply a crafted path parameter to a PHP script to read arbitrary files from the filesystem. The script lacks both authentication checks and secure path handling, allowing directory traversal attacks (e.g., ../../../) to access sensitive files such as configuration files, database dumps, source code, and password reset tokens. If phpMyAdmin is exposed, extracted credentials can be used for direct administrative access. In environments without such tools, attacker-controlled file reads still allow full database extraction by targeting raw MySQL data files. The vendor states that the issue is fixed in 3.5.72.27183.

INFO

Published Date :

2025-08-19T00:00:00.000Z

Last Modified :

2025-08-19T19:54:24.273Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2025-51539 vulnerability.

Vendors Products
Ezged
  • Ezged3
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-51539.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact