« Volver al listado

CVE-2025-54769

Estado: ModificadaAlta (8.8)—

An authenticated, read-only user can upload a file and perform a directory traversal to have the uploaded file placed in a location of their choosing. This can be used to overwrite existing PERL modules within the application to achieve remote code execution (RCE) by an attacker.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

🎯 Técnicas ATT&CK

Cómo se explota esta vulnerabilidad y qué consigue el atacante, en el lenguaje de MITRE ATT&CK.

Usuario autenticado (PR:L) con acceso de red explota directory traversal para sobrescribir módulos PERL y lograr RCE en aplicación web, resultando en web shell.

Inferido por nuestro agente de análisis a partir de la descripción oficial, el vector CVSS y la CWE, y comprobado por un supervisor. Puede contener errores.

🛡️ Mitigaciones ATT&CK que cubren estas técnicas

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2025-54769",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2025-54769",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "poc"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "total"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2025-07-29T13:20:37.673761Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 8.8,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "LOW",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 2.8
      }
    ]
  },
  "affected": [
    {
      "source": "bbf0bd87-ece2-41be-b873-96928ee8fab9",
      "affectedData": [
        {
          "vendor": "Xorux",
          "product": "LPAR2RRD",
          "versions": [
            {
              "status": "affected",
              "version": "8.04"
            }
          ],
          "platforms": [
            "Linux"
          ],
          "defaultStatus": "affected"
        }
      ]
    }
  ],
  "published": "2025-07-29T00:15:24.473",
  "references": [
    {
      "url": "https://korelogic.com/Resources/Advisories/KL-001-2025-016.txt",
      "tags": [
        "Exploit",
        "Third Party Advisory"
      ],
      "source": "bbf0bd87-ece2-41be-b873-96928ee8fab9"
    },
    {
      "url": "https://lpar2rrd.com/note800.php",
      "tags": [
        "Release Notes"
      ],
      "source": "bbf0bd87-ece2-41be-b873-96928ee8fab9"
    },
    {
      "url": "http://seclists.org/fulldisclosure/2025/Jul/19",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "bbf0bd87-ece2-41be-b873-96928ee8fab9",
      "description": [
        {
          "lang": "en",
          "value": "CWE-24"
        },
        {
          "lang": "en",
          "value": "CWE-434"
        },
        {
          "lang": "en",
          "value": "CWE-648"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "An authenticated, read-only user can upload a file and perform a directory traversal to have the uploaded file placed in a location of their choosing.  This can be used to overwrite existing PERL modules within the application to achieve remote code execution (RCE) by an attacker."
    },
    {
      "lang": "es",
      "value": "Un usuario autenticado de solo lectura puede cargar un archivo y realizar un directory traversal  para colocarlo en la ubicación que elija. Esto puede usarse para sobrescribir módulos PERL existentes en la aplicación y lograr la ejecución remota de código (RCE) por parte de un atacante."
    }
  ],
  "lastModified": "2026-06-17T09:40:40.793",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:xorux:lpar2rrd:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5B49D9F5-0510-4191-B286-427ECC02C837",
              "versionEndIncluding": "8.04"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "bbf0bd87-ece2-41be-b873-96928ee8fab9"
}