Metrics
Affected Vendors & Products
Tue, 15 Apr 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Mannaandpoem
Mannaandpoem openmanus |
|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:a:mannaandpoem:openmanus:*:*:*:*:*:*:*:* | |
Vendors & Products |
Mannaandpoem
Mannaandpoem openmanus |
Mon, 31 Mar 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 30 Mar 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as problematic, was found in mannaandpoem OpenManus up to 2025.3.13. This affects the function execute of the file app/tool/file_saver.py of the component File Handler. The manipulation leads to improper access controls. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | mannaandpoem OpenManus File file_saver.py execute access control | |
Weaknesses | CWE-266 CWE-284 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-03-30T16:31:05.242Z
Updated: 2025-03-31T13:04:26.725Z
Reserved: 2025-03-29T19:39:01.052Z
Link: CVE-2025-2954

Updated: 2025-03-31T13:04:12.800Z

Status : Analyzed
Published: 2025-03-30T17:15:19.890
Modified: 2025-04-15T17:57:44.213
Link: CVE-2025-2954

No data.