CVE-2025-15066
Severity CVSS v4.0:
MEDIUM
Type:
CWE-22
Path Traversal
Publication date:
29/12/2025
Last modified:
29/12/2025
Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Missing Authorization vulnerability in Innorix WP allows Path Traversal.This issue affects Innorix WP from All versions If the "exam" directory exists under the directory where the product is installed (ex: innorix/exam)
Impact
Base Score 4.0
6.90
Severity 4.0
MEDIUM
Base Score 3.x
6.20
Severity 3.x
MEDIUM



