Metrics
Affected Vendors & Products
Mon, 24 Mar 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 21 Mar 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in phplaozhang LzCMS-LaoZhangBoKeXiTong up to 1.1.4. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/upload/upimage.html of the component HTTP POST Request Handler. The manipulation of the argument File leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | |
Title | phplaozhang LzCMS-LaoZhangBoKeXiTong HTTP POST Request upimage.html unrestricted upload | |
Weaknesses | CWE-284 CWE-434 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-03-21T21:00:10.948Z
Updated: 2025-03-24T14:31:33.710Z
Reserved: 2025-03-21T13:24:34.647Z
Link: CVE-2025-2607

Updated: 2025-03-24T14:31:30.544Z

Status : Awaiting Analysis
Published: 2025-03-21T21:15:37.430
Modified: 2025-03-24T15:15:17.137
Link: CVE-2025-2607

No data.