---
id: CVE-2025-9000
title: A vulnerability was detected in Mechrevo Control Center GX V2 5.56.51.48
summary: >-
  A vulnerability was detected in Mechrevo Control Center GX V2 5.56.51.48.
  Impacted is an unknown function of the component reg File Handler. The
  manipulation results in uncontrolled search path. The attack needs to be
  approached locally.…
severity: high
cvss: 7
cvssVector: 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-426
  - CWE-427
vendor: mechrevo
product: control_center_gx_v2
affected:
  - control_center_gx_v2 = 5.56.51.48
published: '2025-08-15'
updated: '2026-10-07'
sourceUpdated: '2026-10-07T07:16:56.410'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-9000'
references:
  - url: 'https://drive.proton.me/urls/7QYSEW6734#H3N4fQ3mw6gX'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/cve/CVE-2025-9000'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/submit/624903'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/320029'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/320029/cti'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?submit.624903'
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
  - cve.org
  - exploit-available
exploitAvailable: true
ssvc:
  exploitation: poc
  automatable: 'no'
  technicalImpact: total
  timestamp: '2025-08-15T12:48:33.252438Z'
epss: 0.00168
epssPercentile: 0.05485
ingestedAt: '2026-10-07T08:20:03.890Z'
---

## Overview

A vulnerability was detected in Mechrevo Control Center GX V2 5.56.51.48. Impacted is an unknown function of the component reg File Handler. The manipulation results in uncontrolled search path. The attack needs to be approached locally. The attack requires a high level of complexity. The exploitability is considered difficult. The exploit is now public and may be used.

## Affected

- `control_center_gx_v2 = 5.56.51.48`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
