← volver
CVE-2025-35053

Newforma Info Exchange (NIX) arbitrary file read and delete

CVSS 6.1 MEDIUMEPSS 0.4%CWE-22CWE-73
Newforma Info Exchange (NIX) accepts requests to '/UserWeb/Common/MarkupServices.ashx' specifying the 'DownloadExportedPDF' command that allow an authenticated user to read and delete arbitrary files with 'NT AUTHORITY\NetworkService' privileges. In Newforma before 2023.1, anonymous access is enabled by default (CVE-2025-35062), allowing an otherwise unauthenticated attacker to effectively authenticate as 'anonymous' and exploit this file upload vulnerability.
CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:H/SC:L/SI:N/SA:L
Productos afectados
Newforma · Project Center

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →