CVE-2025-54347: Desktopalert Pingalert Application Server

Critical severity, CVSS 9.9. EPSS: 0.7% chance of exploitation in the next 30 days.

A Directory Traversal vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 which allows an attacker to write arbitrary files under certain conditions.

Affected products

  • Desktopalert Pingalert Application Server: from 6.1.0.11, before 6.1.1.6 (fixed in 6.1.1.6)

Published 2025-11-24. Last modified 2026-06-17.