CVE-2019-25333

Severity CVSS v4.0:
HIGH
Type:
CWE-22 Path Traversal
Publication date:
12/02/2026
Last modified:
13/02/2026

Description

Bullwark Momentum Series JAWS 1.0 contains a directory traversal vulnerability that allows unauthenticated attackers to access system files by manipulating HTTP request paths. Attackers can exploit the vulnerability by sending crafted GET requests with multiple '../' sequences to read sensitive files like /etc/passwd outside the web root directory.