CVE-2025-7719: Smallworld SWMFS Arbitrary File Ops
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in GE Vernova Smallworld on Windows, Linux allows File Manipulation.This issue affects Smallworld: 5.3.5. and previous versions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7719?
CVE-2025-7719 has a medium severity rating due to its potential for file manipulation and unauthorized access.
How do I fix CVE-2025-7719?
To mitigate CVE-2025-7719, upgrade to GE Vernova Smallworld version 5.3.6 or later where the issue is addressed.
What types of systems are affected by CVE-2025-7719?
CVE-2025-7719 affects both Windows and Linux systems running GE Vernova Smallworld versions 5.3.5 and earlier.
What is the nature of the vulnerability in CVE-2025-7719?
CVE-2025-7719 is a Path Traversal vulnerability that allows attackers to manipulate files outside of intended directories.
Is there a workaround for CVE-2025-7719?
A temporary workaround for CVE-2025-7719 may involve adjusting file permission settings while waiting for the official patch.