Valmet DNA Web Tools Arbitrary File Read Vulnerability

Vulnerability

A vulnerability allowing arbitrary file read access has been identified in Valmet DNA Web Tools, specifically in versions C2022 and earlier. This issue can be exploited by an unauthenticated attacker who manipulates the URL to access restricted files.

Impact

Exploitation of this vulnerability allows unauthorized users to read arbitrary files on the web server, potentially leading to the disclosure of sensitive information.

Remediation

Users can contact Valmet Automation Customer Service for the solution. Additionally, a properly configured firewall can help prevent unauthorized access from untrusted networks.

Added: Feb 12, 2026, 7:20 AM
Updated: Feb 12, 2026, 7:20 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
8.3
remediation
0.0
relevance
2.7
threat
6.4
urgency
1.4
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.