First published: Mon Apr 21 2025(Updated: )
opencms V2.3 is vulnerable to Arbitrary file read in src/main/webapp/view/admin/document/dataPage.jsp,
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OpenCms |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-28099 has been classified as a moderate severity vulnerability due to its arbitrary file read capabilities.
To fix CVE-2025-28099, it is recommended to upgrade OpenCms to the latest version where this issue has been addressed.
The risks associated with CVE-2025-28099 include unauthorized access to sensitive files on the server.
CVE-2025-28099 affects users of OpenCms version 2.3, particularly those using the document management features.
CVE-2025-28099 was disclosed in 2025, highlighting vulnerabilities in OpenCms version 2.3.