IQ-Support developed by IQ Service International has an Arbitrary File Read vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.
History

Fri, 14 Nov 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 14 Nov 2025 09:30:00 +0000

Type Values Removed Values Added
First Time appeared Iq Service International
Iq Service International iq-support
Vendors & Products Iq Service International
Iq Service International iq-support

Fri, 14 Nov 2025 03:30:00 +0000

Type Values Removed Values Added
Description IQ-Support developed by IQ Service International has an Arbitrary File Read vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.
Title IQ Service International|IQ-Support - Arbitrary File Read
Weaknesses CWE-23
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published: 2025-11-14T03:05:19.526Z

Updated: 2025-11-14T15:22:57.150Z

Reserved: 2025-11-14T02:35:34.969Z

Link: CVE-2025-13161

cve-icon Vulnrichment

Updated: 2025-11-14T15:22:52.612Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-11-14T04:15:54.913

Modified: 2025-11-14T16:42:03.187

Link: CVE-2025-13161

cve-icon Redhat

No data.