CVE-2025-58292
Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.
Scoring
- Severity
- LOW
- CVSS base score
- 3.3
- CVSS vector
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
- EPSS probability
- 0.10%
- CWE
- CWE-27
- Published
- 2025-10-11
- Last modified
- 2026-03-13
Affected products
- Huawei HarmonyOS
- Huawei HarmonyOS
Weakness type
Related vulnerabilities
- CVE-2026-76344 — Path Traversal through the Search Dispatch REST API in Splunk Enterprise
- CVE-2026-62391 — Apache Kyuubi: kyuubi.session.local.dir.allow.list bypass via unprefixed Spark file-conf aliases
- CVE-2026-24457 — An unsafe parsing of OpenMQ's configuration, allows a remote attacker to read arbitrary files from...
- CVE-2026-20018 — Cisco Firepower Management Center Software and Firepower Threat Defense Path Traversal Vulnerability
- CVE-2025-66518 — Apache Kyuubi: Unauthorized directory access due to missing path normalization
- CVE-2025-10438 — Path Traversal in Yordam BT's Yordam Katalog
- CVE-2025-58761 — Tautulli vulnerable to Unauthenticated Path Traversal in `real_pms_image_proxy`
- CVE-2024-43658 — Using the <redacted> action or <redacted>.sh script, arbitrary files and directories can be deleted using directory traversal.