Vulnerability Description
Quick Agent V3 and Quick Agent V2 contain an issue with improper limitation of a pathname to a restricted directory ('Path Traversal'). If exploited, an arbitrary file in the affected product may be obtained by a remote attacker who can log in to the product.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://jvn.jp/en/jp/JVN82536398/
- https://mfp-support.sios.jp/hc/ja/articles/45853460006937
- https://siosapps.sios.jp/agent_info/20250425001.html
FAQ
What is CVE-2025-27937?
CVE-2025-27937 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Quick Agent V3 and Quick Agent V2 contain an issue with improper limitation of a pathname to a restricted directory ('Path Traversal'). If exploited, an arbitrary file in the affected product may be o...
How severe is CVE-2025-27937?
CVE-2025-27937 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-27937?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.