CNNVD-202509-1726 Information

CNNVD ID

CNNVD-202509-1726

CVE-2025-10245

  • CNNVD Published: 2025-09-11

Description (Chinese)

Display Painéis TGA是巴西Display Painéis公司的一款排队系统。 Display Painéis TGA 7.1.41及之前版本存在路径遍历漏洞,该漏洞源于对文件/gallery/rename中参数current_folder的错误操作,可能导致路径遍历。

Description (English)

Display Painéis TGA is a queuing system for Display Painéis in Brazil. Display Painéis TGA 7.1.41 and previous versions have path-to-path loopholes, which stem from an error in the use of the parameter current ford in file/galery/rename, which may lead to path-to-path.

Hazard Level

High

Vulnerability Type

路径遍历

Affected Vendor

Display Painéis

Published

2025-09-11

Last Modified

2026-02-24

References

https://github.com/lfparizzi/CVE-TGA-7.1.41/tree/main https://vuldb.com/?ctiid.323545 https://vuldb.com/?id.323545 https://vuldb.com/?submit.642068

Share on: