CVE-2019-25097 is a critical path traversal vulnerability affecting soerennb eXtplorer up to version 2.1.12, specifically within its Directory Content Handler component. With a CVSS score of 9.8, this vulnerability is easily exploitable over the network without authentication, allowing an attacker to achieve high confidentiality, integrity, and availability impacts. While there is no known active exploitation or public exploit code (Metasploit, Nuclei, ExploitDB), the vulnerability has garnered significant community discussion, indicating awareness among security researchers. Upgrading to eXtplorer version 2.1.13 is recommended to remediate this issue.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2.1.13CPE matchmatch criteria | cpe:2.3:a:extplorer:extplorer:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.