---
id: CVE-2025-14699
title: >-
  A security vulnerability has been detected in Municorn FAX App 3.27.0 on
  Android
summary: >-
  A security vulnerability has been detected in Municorn FAX App 3.27.0 on
  Android. This vulnerability affects unknown code of the component
  biz.faxapp.app. Such manipulation leads to path traversal. The attack needs to
  be performed locall…
severity: medium
cvss: 5.3
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L'
cwe:
  - CWE-22
published: '2025-12-15'
updated: '2026-10-07'
sourceUpdated: '2026-10-07T19:10:00.160'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-14699'
references:
  - url: 'https://github.com/Secsys-FDU/AF_CVEs/issues/3'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?ctiid.336417'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?id.336417'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?submit.706215'
    label: cna@vuldb.com
tags:
  - nvd
epss: 0.00199
epssPercentile: 0.08808
ingestedAt: '2026-10-07T19:44:15.676Z'
---

## Overview

A security vulnerability has been detected in Municorn FAX App 3.27.0 on Android. This vulnerability affects unknown code of the component biz.faxapp.app. Such manipulation leads to path traversal. The attack needs to be performed locally. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
