The importFile SOAP method is vulnerable to a directory traversal attack. An unauthenticated remote attacker bypass the path restriction and upload files to arbitrary locations.
https://sauter.csaf-tp.certvde.com/.well-known/csaf/white/2025/vde-2025-060.json