CVE-2025-54347
critical · 9.9A Directory Traversal vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 which allows an attacker to write arbitrary files under certain conditions.
9.9
CVSS
0.7%
EPSS (exploit prob.)
52nd
EPSS percentile
2025-11-24
Published
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Weaknesses
CWE-22
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| desktopalert | pingalert_application_server | >= 6.1.0.11, < 6.1.1.6 |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2025-54347