Loading HuntDB...

Web Distributed Authoring and Versioning (WebDAV) External Control of File Name or Path Vulnerability

Added June 10, 2025 Due July 1, 2025 CVE-2025-33053
On Track Web Distributed Authoring and Versioning / Web Distributed Authoring and Versioning (WebDAV) CWE-73

Description

Web Distributed Authoring and Versioning (WebDAV) contains an external control of file name or path vulnerability. This vulnerability could allow an unauthorized attacker to execute code over a network. This vulnerability could affect various products that implement WebDAV, including but not limited to Microsoft Windows.

Required Action

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

References

Additional Information

Catalog Version
2025.06.10
Catalog Released
June 10, 2025
Days Until Due
17 days
Last Updated
2 days, 16 hours ago