Goal Reached Thanks to every supporter โ€” we hit 100%!

Goal: 1000 CNY ยท Raised: 1359 CNY

100%

CVE-2025-24786 โ€” AI Deep Analysis Summary

CVSS 10.0 ยท Critical

Q1What is this vulnerability? (Essence + Consequences)

๐Ÿšจ **Essence**: WhoDB (v0.45.0-) suffers from **Path Traversal**. ๐Ÿ“‰ **Consequences**: Unauthenticated attackers can read **any** SQLite3 database on the host.โ€ฆ

Q2Root Cause? (CWE/Flaw)

๐Ÿ›ก๏ธ **CWE-35**: Improper Limitation of a Pathname to a Restricted Directory. ๐Ÿ› **Flaw**: No validation on database filenames. ๐Ÿ“‚ **Result**: Allows accessing arbitrary files outside intended scope.

Q3Who is affected? (Versions/Components)

๐Ÿข **Vendor**: clidey. ๐Ÿ“ฆ **Product**: WhoDB. ๐Ÿ“… **Affected**: Versions **0.45.0 and earlier**. ๐ŸŒ **Type**: Open-source data browser.

Q4What can hackers do? (Privileges/Data)

๐Ÿ•ต๏ธ **Privileges**: **Unauthenticated** access required. ๐Ÿ—„๏ธ **Data**: Can open **any** SQLite3 DB on the server. ๐Ÿ”“ **Scope**: Host system files exposed. ๐Ÿ“‰ **Severity**: High Confidentiality & Integrity impact.

Q5Is exploitation threshold high? (Auth/Config)

โšก **Threshold**: **LOW**. ๐Ÿ”‘ **Auth**: None required (PR:N). ๐ŸŒ **Network**: Remote (AV:N). ๐ŸŽฏ **Complexity**: Low (AC:L). ๐Ÿ–ฑ๏ธ **UI**: None needed (UI:N).

Q6Is there a public Exp? (PoC/Wild Exploitation)

๐Ÿ“œ **PoC**: Yes. ๐Ÿงช **Source**: Nuclei templates available. ๐Ÿ”— **Link**: [ProjectDiscovery Nuclei](https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2025/CVE-2025-24786.yaml).โ€ฆ

Q7How to self-check? (Features/Scanning)

๐Ÿ” **Check**: Scan for WhoDB instances. ๐Ÿ“ค **Test**: Manipulate database filename input. ๐Ÿ“Š **Tool**: Use Nuclei template for detection. ๐Ÿšฉ **Flag**: Look for unauthorized DB access.

Q8Is it fixed officially? (Patch/Mitigation)

๐Ÿ› ๏ธ **Fix**: Update to version **> 0.45.0**. ๐Ÿ“ข **Advisory**: GHSA-9r4c-jwx3-3j76. โœ… **Status**: Patch available via vendor.

Q9What if no patch? (Workaround)

๐Ÿšง **Workaround**: Restrict network access to WhoDB. ๐Ÿšซ **Block**: Prevent unauthenticated access. ๐Ÿ”’ **Isolate**: Limit file system permissions for the service.

Q10Is it urgent? (Priority Suggestion)

๐Ÿ”ฅ **Priority**: **HIGH**. ๐Ÿšจ **Urgency**: Critical due to **No Auth** requirement. ๐Ÿ“‰ **Risk**: Immediate data breach potential. ๐Ÿƒ **Action**: Patch immediately!