PT-2025-43908 · Openwga · Openwga

Mikecole-Mg

·

Published

2025-10-27

·

Updated

2025-10-27

·

CVE-2025-12250

CVSS v2.0

5.8

Medium

VectorAV:N/AC:L/Au:M/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions OpenWGA version 7.11.12 Build 737
Description A flaw exists in OpenWGA that can lead to path traversal. The issue affects an unknown function within the WGA.File of the TMLScript API component. It is possible to launch the attack remotely. An exploit for this issue has been published.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2025-12250

Affected Products

Openwga