Path Traversal Vulnerability in OpenText XM Fax Product
CVE-2025-8054
7.1HIGH
What is CVE-2025-8054?
A vulnerability in OpenText⢠XM Fax allows an attacker to exploit improper limitations of a pathname, potentially disclosing sensitive file content from the local filesystem. This flaw impacts version 24.2 of XM Fax and necessitates timely remediation to safeguard against unauthorized access to files.
Affected Version(s)
XM Fax 24.2
References
CVSS V4
Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Inetum Hacking team, leaded in this research by Ăngel M Sequeira and with the help of @cr33pb0y
