Files or directories accessible to external parties issue exists in SS1 Ver.16.0.0.10 and earlier (Media version:16.0.0a and earlier). If exploited, uploaded files and SS1 configuration files may be accessed by a remote unauthenticated attacker.
Metrics
Affected Vendors & Products
References
History
Thu, 28 Aug 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 28 Aug 2025 08:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Files or directories accessible to external parties issue exists in SS1 Ver.16.0.0.10 and earlier (Media version:16.0.0a and earlier). If exploited, uploaded files and SS1 configuration files may be accessed by a remote unauthenticated attacker. | |
Weaknesses | CWE-552 | |
References |
| |
Metrics |
cvssV3_0
|

Status: PUBLISHED
Assigner: jpcert
Published: 2025-08-28T08:27:52.965Z
Updated: 2025-08-28T14:17:26.892Z
Reserved: 2025-08-25T06:42:31.576Z
Link: CVE-2025-52460

Updated: 2025-08-28T14:17:24.543Z

Status : Awaiting Analysis
Published: 2025-08-28T09:15:32.843
Modified: 2025-08-29T16:24:09.860
Link: CVE-2025-52460

No data.