Exposure of file path, file size or file existence vulnerabilities in ASPECT provide attackers access to file system information if session administrator credentials become compromised. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03.
History

Thu, 22 May 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 22 May 2025 17:45:00 +0000

Type Values Removed Values Added
Description Exposure of file path, file size or file existence vulnerabilities in ASPECT provide attackers access to file system information if session administrator credentials become compromised. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03.
Title Admin Authorized Exposure of file path, file size or file existence
Weaknesses CWE-497
References
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:N'}

cvssV4_0

{'score': 5.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N/S:N/AU:N/R:U/V:C'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ABB

Published: 2025-05-22T17:38:50.749Z

Updated: 2025-05-22T18:32:02.988Z

Reserved: 2025-03-17T13:06:41.480Z

Link: CVE-2025-30170

cve-icon Vulnrichment

Updated: 2025-05-22T18:31:58.410Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-05-22T18:15:41.670

Modified: 2025-05-23T15:55:02.040

Link: CVE-2025-30170

cve-icon Redhat

No data.