CVE-2025-25055

MEDIUM

FileMegane >1.0.0.0 <3.4.0.0 - Auth Bypass

Title source: llm
STIX 2.1

Description

Authentication bypass by spoofing issue exists in FileMegane versions above 1.0.0.0 prior to 3.4.0.0, which may lead to user impersonation. If exploited, restricted file contents may be accessed.

Scores

CVSS v3 5.3
EPSS 0.0008
EPSS Percentile 22.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-290
Status published
Products (1)
JIP InfoBridge Co., Ltd./FileMegane Versions above 1.0.0.0 prior to 3.4.0.0
Published Feb 18, 2025
Tracked Since Feb 18, 2026