PT-2025-26645 · Convoy · Convoy

Anushk-Fro

·

Publicado

2025-06-23

·

Atualizado

2025-07-31

·

CVE-2025-52562

CVSS v3.1

10

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Convoy versions 3.9.0-rc3 through 4.4.0
Description: Convoy is a KVM server management panel for hosting businesses. A directory traversal vulnerability exists in the LocaleController component, allowing an unauthenticated remote attacker to exploit this issue by sending a specially crafted HTTP request with malicious locale and namespace parameters. This enables the attacker to include and execute arbitrary PHP files on the server. The issue has been patched in version 4.4.1. A temporary workaround involves implementing strict Web Application Firewall (WAF) rules to incoming requests targeting the vulnerable endpoints.
Recommendations: For Convoy versions 3.9.0-rc3 through 4.4.0, update to version 4.4.1 to resolve the issue. As a temporary workaround, consider implementing strict Web Application Firewall (WAF) rules to incoming requests targeting the vulnerable endpoints.

Exploit

Correção

RCE

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-52562
GHSA-43G3-QPWQ-HFGG

Produtos afetados

Convoy