PT-2025-35183 · Ai3 · Qbicrmgateway

Huding

·

Published

2025-08-29

·

Updated

2025-09-03

·

CVE-2025-9639

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions QbiCRMGateway (affected versions not specified)
Description The QbiCRMGateway developed by Ai3 is susceptible to an arbitrary file reading issue. Unauthenticated remote attackers can exploit a relative path traversal to download arbitrary system files.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Relative Path Traversal

Weakness Enumeration

Related Identifiers

CVE-2025-9639

Affected Products

Qbicrmgateway