A zip slip vulnerability in the component \service\migrate\MigrateForm.java of JEEWMS v3.7 allows attackers to execute arbitrary code via a crafted Zip file.
References
| Link | Resource |
|---|---|
| https://github.com/wy876/cve/issues/7 | Exploit Issue Tracking |
Configurations
History
No history.
Information
Published : 2025-04-15 19:16
Updated : 2025-04-25 16:49
NVD link : CVE-2025-29213
Mitre link : CVE-2025-29213
CVE.ORG link : CVE-2025-29213
JSON object : View
Products Affected
jeewms
- jeewms
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
