This vulnerability allows authenticated attackers to read an arbitrary file by changing a filepath parameter into an internal system path.
Metrics
Affected Vendors & Products
References
History
Mon, 23 Feb 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 | |
| Metrics |
ssvc
|
Mon, 23 Feb 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zenitel
Zenitel alphacom Xe Audio Server |
|
| Vendors & Products |
Zenitel
Zenitel alphacom Xe Audio Server |
Fri, 20 Feb 2026 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | This vulnerability allows authenticated attackers to read an arbitrary file by changing a filepath parameter into an internal system path. | |
| Title | Authenticated Arbitrary File Read via filepath parameter | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: NCSC-NL
Published: 2026-02-20T07:58:57.686Z
Updated: 2026-02-23T18:06:05.759Z
Reserved: 2025-09-22T10:23:28.574Z
Link: CVE-2025-59819
Updated: 2026-02-23T18:05:52.876Z
Status : Awaiting Analysis
Published: 2026-02-20T08:17:02.057
Modified: 2026-02-23T19:22:56.197
Link: CVE-2025-59819
No data.