Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-25075

HTML injection combined with path traversal in the Email service in Gravitee API Management before 1.25.3 allows anonymous users to read arbitrary files via a /management/users/register request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 60.4%
CVSS Severity
CVSS v3 Score 6.1
Products affected by CVE-2019-25075


Contact Us

Shodan ® - All rights reserved