CVE-2025-41723: Sauter: Directory Traversal in importFile SOAP Method
Published Oct 22, 2025
·Updated
The importFile SOAP method is vulnerable to a directory traversal attack. An unauthenticated remote attacker bypass the path restriction and upload files to arbitrary locations.
Event History
Oct 22, 2025
CVE Published
via MITRE·07:01 AM
Data Sourced
via MITRE·07:01 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-41723?
CVE-2025-41723 has a critical severity rating of 9.8.
2
How do I fix CVE-2025-41723?
To mitigate CVE-2025-41723, ensure proper input validation and restrict file upload paths in the importFile SOAP method.
3
What type of attack is associated with CVE-2025-41723?
CVE-2025-41723 is associated with a directory traversal attack that allows unauthorized file uploads.
4
Who is affected by CVE-2025-41723?
Any system utilizing the vulnerable importFile SOAP method is potentially affected by CVE-2025-41723.
5
Can an attacker exploit CVE-2025-41723 without authentication?
Yes, an unauthenticated remote attacker can exploit CVE-2025-41723 to bypass path restrictions.