/Vulnerability Library

Yonyou YonBIP - Path Traversal

CVE-2025-66744
Verified

Description

Yonyou YonBIP v3 and before contains a path traversal caused by improper validation in the LoginWithV8 interface of the series data application service system, letting unauthorized attackers access sensitive information.

Severity

High

CVSS Score

7.5

Exploit Probability

2%

Published Date

February 10, 2026

Template Author

dhiyaneshdk

CVE-2025-66744.yaml
7.5Score

CVSS Metrics

CVSS Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVE ID:
cve-2025-66744

References

https://nvd.nist.gov/vuln/detail/CVE-2025-66744https://github.com/iSee857/YonYouBip-path-travel

Remediation Steps

Update to the latest version beyond v3.