Path Traversal in restorerunbackup() in AIM 3.28.0 allows remote attackers to write arbitrary files to the server's filesystem via a crafted backup tar file submitted to the run_instruction API, which is extracted without path validation during restoration.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/51xxx/CVE-2025-51463.json",
"cna_assigner": "mitre"
}