CVE-2025-58464

Severity CVSS v4.0:
HIGH
Type:
CWE-23 Relative Path Traversal
Publication date:
07/11/2025
Last modified:
14/11/2025

Description

A relative path traversal vulnerability has been reported to affect QuMagie. If a remote attacker, they can then exploit the vulnerability to read the contents of unexpected files or system data.<br /> <br /> We have already fixed the vulnerability in the following version:<br /> QuMagie 2.7.3 and later

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:qnap:qumagie:*:*:*:*:*:*:*:* 2.7.0 (including) 2.7.3 (excluding)


References to Advisories, Solutions, and Tools