Vulnerability Details CVE-2025-58464
A relative path traversal vulnerability has been reported to affect QuMagie. If a remote attacker, they can then exploit the vulnerability to read the contents of unexpected files or system data.
We have already fixed the vulnerability in the following version:
QuMagie 2.7.3 and later
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 46.7%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2025-58464
-
cpe:2.3:a:qnap:qumagie:2.7.0
-
cpe:2.3:a:qnap:qumagie:2.7.1
-
cpe:2.3:a:qnap:qumagie:2.7.2