CNNVD-202512-1007 Information

CNNVD ID

CNNVD-202512-1007

CVE-2025-14220

  • CNNVD Published: 2025-12-08

Description (Chinese)

ORICO CD3510是ORICO公司的一款可联网硬盘盒。 ORICO CD3510 1.9.12版本存在路径遍历漏洞,该漏洞源于文件上传组件存在路径遍历漏洞。

Description (English)

ORICO CD3510 is an online hard drive box for ORICO companies. Version ORICO CD 3510 1.9.12 has a loophole in the path, which stems from the routing of the upload component of the document.

Hazard Level

High

Vulnerability Type

路径遍历

Affected Vendor

ORICO

Published

2025-12-08

Last Modified

2026-02-24

References

https://vuldb.com/?submit.701302 https://vuldb.com/?ctiid.334662 https://www.notion.so/2b66cf4e528a8002aa39df57a71b105a https://vuldb.com/?id.334662 https://access.redhat.com/security/cve/cve-2025-14220

Share on: