An Information Disclosure vulnerability in CouchCMS 2.4 allow an Admin user to read arbitrary files via traversing directories back after back. It can Disclosure the source code or any other confidential information if weaponize accordingly.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 12 Jan 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Couchcms
Couchcms couchcms |
|
| Vendors & Products |
Couchcms
Couchcms couchcms |
Fri, 09 Jan 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An Information Disclosure vulnerability in CouchCMS 2.4 allow an Admin user to read arbitrary files via traversing directories back after back. It can Disclosure the source code or any other confidential information if weaponize accordingly. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-01-12T16:24:24.173Z
Reserved: 2025-12-08T00:00:00.000Z
Link: CVE-2025-67004
No data.
Status : Received
Published: 2026-01-09T17:15:53.030
Modified: 2026-01-09T17:15:53.030
Link: CVE-2025-67004
No data.
OpenCVE Enrichment
Updated: 2026-01-12T14:38:12Z
Weaknesses
No weakness.