CVE-2025-14224 - Yottamaster DM2/DM3/DM200 File Upload path traversal

CVE-2025-14224 - Yottamaster DM2/DM3/DM200 File Upload path traversal

CVE ID : CVE-2025-14224 Published : Dec. 8, 2025, 9:15 a.m. | 45 minutes ago Description : A vulnerability was found in Yottamaster DM2, DM3 and DM200 up to 1.2.23/1.9.12. Affected by this issue is some unknown functionality of the component File Upload. Performing manipulation results in path traversal. Remote exploitation of the attack is possible. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
Dec. 8, 2025
Impact: path traversal

Source: Telegram CVE Monitor