CVE-2025-7098: Comodo Internet Security Premium File Name path traversal
A vulnerability, which was classified as critical, was found in Comodo Internet Security Premium 12.3.4.8162. Affected is an unknown function of the component File Name Handler. The manipulation of the argument name/folder leads to path traversal. It is possible to launch the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7098?
CVE-2025-7098 is classified as a critical vulnerability.
How does CVE-2025-7098 affect Comodo Internet Security Premium?
CVE-2025-7098 affects an unknown function of the File Name Handler component, leading to path traversal.
Can CVE-2025-7098 be exploited remotely?
Yes, CVE-2025-7098 can potentially be exploited remotely through crafted arguments.
What versions of Comodo Internet Security Premium are affected by CVE-2025-7098?
CVE-2025-7098 affects Comodo Internet Security Premium version 12.3.4.8162.
How can CVE-2025-7098 be mitigated or fixed?
To mitigate CVE-2025-7098, updating to the latest version of Comodo Internet Security Premium is recommended.