5.4
CVSSv3

CVE-2021-36425

Published: 03/02/2023 Updated: 10/02/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.5 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Directory traversal vulnerability in phpcms 1.9.25 allows remote malicious users to delete arbitrary files via unfiltered $file parameter to unlink method in include/inc_act/act_ftptakeover.php file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

phpwcms phpwcms