CVE-2025-13771: Uniong Webitr
Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.
WebITR developed by Uniong has an Arbitrary File Read vulnerability, allowing authenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.
Affected products
- Uniong Webitr: before 2_1_0_34 (fixed in 2_1_0_34)
Published 2025-11-28. Last modified 2026-10-08.