CVE-2025-52237: Medium severity sscms SSCMS vulnerability
Published Aug 5, 2025
·Updated
An issue in the component /stl/actions/download?filePath of SSCMS v7.3.1 allows attackers to execute a directory traversal.
Affected Software
2 affected components
sscms SSCMS
sscms SSCMS=7.3.1
Event History
Aug 5, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-52237?
The severity of CVE-2025-52237 is considered high due to its potential to allow directory traversal attacks.
2
How do I fix CVE-2025-52237?
To fix CVE-2025-52237, update SSCMS to the latest version that addresses this vulnerability.
3
What are the potential impacts of CVE-2025-52237?
CVE-2025-52237 can allow attackers to access unauthorized files on the server, compromising the confidentiality of sensitive data.
4
Is CVE-2025-52237 exploitable remotely?
Yes, CVE-2025-52237 is exploitable remotely, allowing attackers to conduct directory traversal attacks over the web.
5
Which versions of SSCMS are affected by CVE-2025-52237?
CVE-2025-52237 affects SSCMS v7.3.1 and potentially earlier versions.