Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 2

Количество 2

nvd логотип

CVE-2025-64050

9 месяцев назад

A Remote Code Execution (RCE) vulnerability in the template management component in REDAXO CMS 5.20.0 allows remote authenticated administrators to execute arbitrary operating system commands by injecting PHP code into an active template. The payload is executed when visitors access frontend pages using the compromised template.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-xj9j-gjxg-7jvq

9 месяцев назад

REDAXO CMS is vulnerable to RCE attack through its template management component

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-64050

A Remote Code Execution (RCE) vulnerability in the template management component in REDAXO CMS 5.20.0 allows remote authenticated administrators to execute arbitrary operating system commands by injecting PHP code into an active template. The payload is executed when visitors access frontend pages using the compromised template.

CVSS3: 7.2
1%
Низкий
9 месяцев назад
github логотип
GHSA-xj9j-gjxg-7jvq

REDAXO CMS is vulnerable to RCE attack through its template management component

CVSS3: 7.2
1%
Низкий
9 месяцев назад

Уязвимостей на страницу