Vulnerability Description
LabVantage before LV 8.8.0.13 HF6 allows local file inclusion. Authenticated users can retrieve arbitrary files from the environment via the objectname request parameter.
CVSS Score
CRITICAL
Related Weaknesses (CWE)
References
- https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2025-43951
- https://www.labvantage.com/informatics/lims/
FAQ
What is CVE-2025-43951?
CVE-2025-43951 is a vulnerability with a CVSS score of 9.8 (CRITICAL). LabVantage before LV 8.8.0.13 HF6 allows local file inclusion. Authenticated users can retrieve arbitrary files from the environment via the objectname request parameter.
How severe is CVE-2025-43951?
CVE-2025-43951 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2025-43951?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.