Arbitrary File Read Vulnerability in WMPro by Sunnet
CVE-2025-15225
8.7HIGH
What is CVE-2025-15225?
The WMPro application developed by Sunnet contains an Arbitrary File Read vulnerability that enables unauthenticated remote attackers to exploit Relative Path Traversal techniques. This can potentially allow them to access and read arbitrary files on the server, leading to exposure of sensitive information and further attacks. Proper security measures should be taken to mitigate this vulnerability and protect data integrity.
Affected Version(s)
WMPro 5.0 <= 5.2
