Path Traversal Vulnerability in QOCA AI Medical Cloud Platform by Quanta Computer
CVE-2025-15237

5.3MEDIUM

Key Information:

Vendor
CVE Published:
5 January 2026

What is CVE-2025-15237?

The QOCA AI Medical Cloud Platform, developed by Quanta Computer, is susceptible to a Path Traversal vulnerability. This security flaw allows authenticated remote attackers to exploit an Absolute Path Traversal condition, potentially exposing sensitive folder names within specified directories. By leveraging this vulnerability, attackers may gain unauthorized access to system resources, posing a risk to data confidentiality and integrity.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

QOCA aim AI Medical Cloud Platform 0 <= 2.7.5

References

CVSS V4

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.