216.73.216.197

CVE-2025-62630

· Published 06/11/2025 23:15 · Modified 19/11/2025 20:17

Labels: CVE-2025-62630 2025-11-06CVE-2025-62630CWE-22[email protected]

Essential information

Published
06/11/2025 23:15
Modified
19/11/2025 20:17
Author
Creator
CVSS
8.7 HIGH (v3) 8.7 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Due to insufficient sanitization, an attacker can upload a specially crafted configuration file to traverse directories and achieve remote code execution with system-level permissions.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
advantech / deviceon\/iedge cpe:2.3:a:advantech:deviceon\/iedge:*:*:*:*:*:*:*:*

References