Path Traversal Vulnerability in JMRI by JMRI
CVE-2025-14311

6.8MEDIUM

Key Information:

Vendor

Jmri

Status
Vendor
CVE Published:
9 December 2025

What is CVE-2025-14311?

A Path Traversal vulnerability in JMRI allows attackers to access restricted directories and potentially retrieve sensitive files. This flaw affects versions prior to 5.13.3 and can be exploited by crafting malicious requests that manipulate file paths. Users are advised to update to the latest version to mitigate risks associated with this vulnerability.

Affected Version(s)

JMRI 0 < 5.13.3

References

CVSS V4

Score:
6.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

TITAN Team ([email protected])
.