PT-2025-35522 · Mobsf · Mobsf
Noname1337H1
·
Published
2025-09-02
·
Updated
2025-09-03
·
CVE-2025-58162
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
MobSF version 4.4.0
Description
MobSF is a mobile application security testing tool. An authenticated user who uploaded a specially prepared one.a file could write arbitrary files to any directory writable by the user of the MobSF process. This issue was addressed in version 4.4.1.
Recommendations
Update to version 4.4.1 or later.
Exploit
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Mobsf