CVE-2025-62630

Severity CVSS v4.0:
HIGH
Type:
CWE-22 Path Traversal
Publication date:
06/11/2025
Last modified:
19/11/2025

Description

Due to insufficient sanitization, an attacker can upload a specially <br /> crafted configuration file to traverse directories and achieve remote <br /> code execution with system-level permissions.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:advantech:deviceon\/iedge:*:*:*:*:*:*:*:* 2.0.2 (including)