- Description
- Improper Limitation of a Pathname caused a Path Traversal vulnerability in Sparx Systems Pro Cloud Server. This vulnerability is present in logview.php and it allows reading arbitrary files on the filesystem. Logview is accessible on Pro Cloud Server Configuration interface. This issue affects Pro Cloud Server: earlier than 6.0.165.
- Source
- db4dfee8-a97e-4877-bfae-eba6d14a2166
- NVD status
- Awaiting Analysis
CVSS 4.0
- Type
- Secondary
- Base score
- 8.3
- Impact score
- -
- Exploitability score
- -
- Vector string
- CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:L/VA:L/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
- Severity
- HIGH
- db4dfee8-a97e-4877-bfae-eba6d14a2166
- CWE-20
- Hype score
- Not currently trending
🚨 A critical path traversal flaw (CVE-2025-4377) in Sparx Pro Cloud Server could expose sensitive system files to authenticated users. Versions before 6.0.165 are vulnerable. Patch now. #CyberSecurity #CVE2025 #InfoSec 👇 https://t.co/JFpT5cQOFv
@threatsbank
10 May 2025
11 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨 CVE-2025-4377 🔴 HIGH (8.3) 🏢 Sparx Systems - Pro Cloud Server 🏗️ 0 🔗 https://t.co/lVopg891Op #CyberCron #VulnAlert #InfoSec https://t.co/68EBWoVezS
@cybercronai
9 May 2025
13 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[CVE-2025-4377: HIGH] Path Traversal flaw in Sparx Systems Pro Cloud Server allows reading files on the system. Upgrade to version 6.0.165 to address this security concern.#cve,CVE-2025-4377,#cybersecurity https://t.co/M7xw0xLtVe https://t.co/Z8GdhrH3Iq
@CveFindCom
9 May 2025
41 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-4377 Improper Limitation of a Pathname caused a Path Traversal vulnerability in Sparx Systems Pro Cloud Server. This vulnerability is present in logview.php and it allows r… https://t.co/mwABbQYLFO
@CVEnew
9 May 2025
357 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes