CVE-2025-15225

WMPro developed by Sunnet has an Arbitrary File Read vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to read arbitrary system files.

high 7.5 CVSS 3.1
Published: Dec 29, 2025
Modified: Dec 31, 2025
Vendor: Sun.Net
Product: Wmpro

Description

WMPro developed by Sunnet has an Arbitrary File Read vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to read arbitrary system files.

References

Related CVEs