CVE-2025-51052 Information

Description

A path traversal vulnerability in Vedo Suite 2024.17 allows remote authenticated attackers to read arbitrary filesystem files by exploiting an unsanitized ‘file_get_contents()’ function call in ‘/api_vedo/template’.

Reference

http://vedo.com https://github.com/jacopoaugelli/vedo-suite-exploits

CNNVD-202508-625 (Published: 2025-08-06)

Share on: