Path Traversal Vulnerability in Quantumcloud KBx Pro Ultimate Software
CVE-2025-31053

7.7HIGH

Key Information:

Vendor

WordPress

Vendor
CVE Published:
23 May 2025

What is CVE-2025-31053?

A path traversal vulnerability has been identified in Quantumcloud's KBx Pro Ultimate, allowing unauthorized access to files outside of the intended directory. This flaw can potentially enable attackers to manipulate file paths, leading to unauthorized file manipulation and increased exposure of sensitive data. The vulnerability affects versions of KBx Pro Ultimate from n/a up to 7.9.8, necessitating prompt attention to mitigate associated security risks.

Affected Version(s)

KBx Pro Ultimate <= 7.9.8

References

CVSS V3.1

Score:
7.7
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Tran Nguyen Bao Khanh (VCI - VNPT Cyber Immunity) (Patchstack Alliance)
.
CVE-2025-31053 : Path Traversal Vulnerability in Quantumcloud KBx Pro Ultimate Software