MEDIUM🇵🇱 Wersja polska

CVE-2025-47220

CVSS 5.3v3.1pub. 2025-11-13upd. 2025-12-17

A local file enumeration was found in Keyfactor SignServer versions prior to 7.3.2 .The property VISIBLE_SIGNATURE_CUSTOM_IMAGE_PATH, which exists in the PDFSigner and the PAdESSigner, can be set to any path without any restrictions by an admin user. In the case that the provided path points to an existing file, readable by the user running the application server, but is not a recognized image format, it will return this as an error to the clientside, confirming the existences of the file.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
  • Keyfactor Signserver

    APP
    Keyfactor
    < 7.3.1
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2025-26787MEDIUM4.7same product

Błąd w logice startowania kontenera SignServer znaleziono w wersjach Keyfactor SignServer wcześniejszych niż 7...

CVE-2025-47221MEDIUM5.3same product

An arbitrary file write was found in Keyfactor SignServer versions prior to 7.3.2. The properties ARCHIVETODIS...

CVE-2025-47222MEDIUM6.5same product

A class name enumeration was found in Keyfactor SignServer versions prior to 7.3.2. Setting any chosen class n...

CVE-2024-34458HIGH7.5same vendor

Keyfactor Command 10.5.x before 10.5.1 and 11.5.x before 11.5.1 allows SQL Injection which could result in inf...

CVE-2024-42006HIGH7.5same vendor

Keyfactor AWS Orchestrator through 2.0 allows Information Disclosure.