PT-2025-33747 · Ezged3 · Ezged3

Ballpoint

·

Published

2025-08-19

·

Updated

2025-12-05

·

CVE-2025-51539

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions EzGED3 versions prior to 3.5.72.27183
Description EzGED3 contains an unauthenticated arbitrary file read issue because of inadequate access control and insufficient input validation within a script accessible through the web interface. A remote attacker can provide a manipulated path parameter to a PHP script to read arbitrary files from the filesystem. The script lacks authentication checks and secure path handling, allowing directory traversal attacks (e.g., ../../../) to access sensitive files such as configuration files, database dumps, source code, and password reset tokens. If phpMyAdmin is exposed, extracted credentials could be used for direct administrative access. In environments without phpMyAdmin, attacker-controlled file reads can still allow full database extraction by targeting raw MySQL data files.
Recommendations Update EzGED3 to version 3.5.72.27183 or later.

Exploit

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2025-51539

Affected Products

Ezged3