CVE-2025-30173: Admin Authorized File Upload
File upload vulnerabilities are present in ASPECT if session administrator credentials become compromised This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-30173?
CVE-2025-30173 is classified as a high severity vulnerability due to its potential for unauthorized file uploads.
How do I fix CVE-2025-30173?
To fix CVE-2025-30173, administrators should ensure that session credentials are secured and consider updating to the latest versions of ASPECT-Enterprise, NEXUS Series, and MATRIX Series beyond 3.08.03.
What software is affected by CVE-2025-30173?
CVE-2025-30173 affects ASPECT-Enterprise, NEXUS Series, and MATRIX Series versions up to and including 3.08.03.
How can compromised session administrator credentials lead to CVE-2025-30173?
Compromised session administrator credentials can allow attackers to exploit file upload vulnerabilities, leading to unauthorized access or data breaches.
Is there a workaround for CVE-2025-30173?
A potential workaround for CVE-2025-30173 includes enhancing session management controls and restricting file upload permissions until a patch is applied.