← back
CVE-2025-40629

Path Traversal vulnerability in PNETLab

CVSS 8.7 HIGHEPSS 0.8%CWE-22
PNETLab 4.2.10 does not properly sanitize user inputs in its file access mechanisms. This allows attackers to perform directory traversal by manipulating file paths in HTTP requests. Specifically, the application is vulnerable to requests that access sensitive files outside the intended directory.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Affected products
PNETLab · PNETLab

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →