PT-2025-12173 · Unknown · Open-Webui

Published

2025-03-20

·

Updated

2025-07-29

·

CVE-2024-7033

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions open-webui/open-webui version 0.3.8
Description An arbitrary file write vulnerability exists in the download model endpoint. When deployed on Windows, the application improperly handles file paths, allowing an attacker to manipulate the file path to write files to arbitrary locations on the server's filesystem. This can result in overwriting critical system or application files, causing denial of service, or potentially achieving remote code execution (RCE). RCE can allow an attacker to execute malicious code with the privileges of the user running the application, leading to a full system compromise.
Recommendations For open-webui/open-webui version 0.3.8, restrict access to the download model endpoint to prevent unauthorized file writes.

Exploit

Fix

DoS

RCE

Weakness Enumeration

Related Identifiers

CVE-2024-7033
GHSA-3P9Q-7W63-3F8Q

Affected Products

Open-Webui