Skip to main content

CVE-2025-30005

8.3
HIGHCVSS v3.1 Base Score
70.19%
HIGH RiskEPSS (99th percentile)

Xorcom CompletePBX is vulnerable to a path traversal via the Diagnostics reporting module, which will allow reading of arbitrary files and additionally delete any retrieved file in place of the expected report. This issue affects CompletePBX: all versions up to and prior to 5.2.35

Published: 3/31/2025
Modified: 12/27/2025
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

8.3HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L

EPSS Score (Exploitation Probability)

70.19%HIGH Exploitation Risk
99th percentile

This vulnerability has a 70.19% probability of being exploited in the next 30 days, ranking higher than 99% of all scored CVEs.

Related Vulnerabilities