CVE-2025-34171

Source
https://cve.org/CVERecord?id=CVE-2025-34171
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-34171.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-34171
Published
2026-01-02T17:15:45.897Z
Modified
2026-08-12T03:51:24.061941841Z
Severity
  • 6.9 (Medium) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N CVSS Calculator
Summary
CasaOS <= 0.4.15 Unauthenticated File and Debug Data Exposure
Details

CasaOS versions up to and including 0.4.15 expose multiple unauthenticated endpoints that allow remote attackers to retrieve sensitive configuration files and system debug information. The /v1/users/image endpoint can be abused with a user-controlled path parameter to access files under /var/lib/casaos/1/, which reveals installed applications and configuration details. Additionally, /v1/sys/debug discloses host operating system, kernel, hardware, and storage information. The endpoints also return distinct error messages, enabling file existence enumeration of arbitrary paths on the underlying host filesystem. This information disclosure can be used for reconnaissance and to facilitate targeted follow-up attacks against services deployed on the host.

Database specific
{
    "cwe_ids": [
        "CWE-497",
        "CWE-862"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/34xxx/CVE-2025-34171.json",
    "cna_assigner": "VulnCheck"
}
References

Affected packages

Git / github.com/icewhaletech/casaos

Affected ranges

Type
GIT
Repo
https://github.com/icewhaletech/casaos
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Database specific
Show details
{
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "last_affected": "0.4.15"
        }
    ],
    "source": "AFFECTED_FIELD"
}

Affected versions

0.*
0.1.0
0.2.5
v0.*
v0.1.2
v0.1.3
v0.1.4
v0.1.5
v0.2.1
v0.2.2
v0.2.3
v0.2.4
v0.2.5
v0.2.6
v0.2.7
v0.2.8
v0.2.9
v0.3.0
v0.3.1
v0.3.1.1
v0.3.2
v0.3.2.1
v0.3.3-alpha-1
v0.3.3-alpha-2
v0.3.5.1
v0.3.6
v0.3.7
v0.3.8
v0.4.0
v0.4.0-alpha1
v0.4.0-alpha2
v0.4.0-alpha4
v0.4.0-alpha5
v0.4.1
v0.4.1-alpha1
v0.4.1-alpha2
v0.4.1-alpha3
v0.4.1-alpha4
v0.4.1-alpha5
v0.4.10
v0.4.11
v0.4.12
v0.4.12-alpha1
v0.4.13
v0.4.14
v0.4.15
v0.4.2
v0.4.2-alpha1
v0.4.2-alpha2
v0.4.2-alpha3
v0.4.2-alpha4
v0.4.2-alpha5
v0.4.2-alpha6
v0.4.2-alpha8
v0.4.2-alpha9
v0.4.3
v0.4.3-1
v0.4.3-alpha1
v0.4.3-alpha2
v0.4.3-alpha3
v0.4.4-2
v0.4.4-2-alpha1
v0.4.4-3
v0.4.4-3-alpha1
v0.4.4-3-alpha2
v0.4.4-3-alpha3
v0.4.4-3-alpha4
v0.4.4-3-alpha5
v0.4.4-3-alpha6
v0.4.4-3-alpha7
v0.4.4-3-alpha8
v0.4.4-3-alpha9
v0.4.4-alpha1
v0.4.4-alpha2
v0.4.4-alpha6
v0.4.4-alpha7
v0.4.4-alpha8
v0.4.4-alpha9
v0.4.5
v0.4.5-alpha7
v0.4.6
v0.4.7
v0.4.8
v0.4.9

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-34171.json"