Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-69981

Опубликовано: 03 фев. 2026
Источник: nvd
EPSS Низкий

Описание

FUXA v1.2.7 contains an Unrestricted File Upload vulnerability in the /api/upload API endpoint. The endpoint lacks authentication mechanisms, allowing unauthenticated remote attackers to upload arbitrary files. This can be exploited to overwrite critical system files (such as the SQLite user database) to gain administrative access, or to upload malicious scripts to execute arbitrary code.

EPSS

Процентиль: 21%
0.00069
Низкий

Дефекты

Связанные уязвимости

github
4 дня назад

FUXA contains an Unrestricted File Upload vulnerability

EPSS

Процентиль: 21%
0.00069
Низкий

Дефекты