File Upload Vulnerability in XYZ Product by ABC Vendor
CVE-2025-24489

5.3MEDIUM

Key Information:

Vendor
CVE Published:
21 August 2025

What is CVE-2025-24489?

This vulnerability allows an unauthorized attacker to upload arbitrary files through a specific service in XYZ Product, potentially leading to severe system compromises. Organizations using this product should conduct immediate assessments and implement necessary security measures to safeguard their systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

INFINITT PACS System Manager 0 <= 3.0.11.5 BN9

INFINITT PACS System Manager 3.0.11.5 BN10

References

CVSS V4

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Piotr Kijewski of the Shadowserver Foundation reported these vulnerabilities to CISA.
.