CVE-2025-52237
Published Aug 5, 2025An issue in the component /stl/actions/download?filePath of SSCMS v7.3.1 allows attackers to execute a directory traversal.
Vendor/product archive
2 CVEs tagged to sscms / sscms — 0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.
An issue in the component /stl/actions/download?filePath of SSCMS v7.3.1 allows attackers to execute a directory traversal.
SSCMS 7.2.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the Content Management component.