Логотип exploitDog
bind:CVE-2025-34506
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-34506

Количество 2

Количество 2

nvd логотип

CVE-2025-34506

около 2 месяцев назад

WBCE CMS version 1.6.3 and prior contains an authenticated remote code execution vulnerability that allows administrators to upload malicious modules. Attackers can craft a specially designed ZIP module with embedded PHP reverse shell code to gain remote system access when the module is installed.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-5cm9-xgrf-p6qw

около 2 месяцев назад

WBCE CMS version 1.6.3 and prior contains an authenticated remote code execution vulnerability that allows administrators to upload malicious modules. Attackers can craft a specially designed ZIP module with embedded PHP reverse shell code to gain remote system access when the module is installed.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-34506

WBCE CMS version 1.6.3 and prior contains an authenticated remote code execution vulnerability that allows administrators to upload malicious modules. Attackers can craft a specially designed ZIP module with embedded PHP reverse shell code to gain remote system access when the module is installed.

CVSS3: 8.8
1%
Низкий
около 2 месяцев назад
github логотип
GHSA-5cm9-xgrf-p6qw

WBCE CMS version 1.6.3 and prior contains an authenticated remote code execution vulnerability that allows administrators to upload malicious modules. Attackers can craft a specially designed ZIP module with embedded PHP reverse shell code to gain remote system access when the module is installed.

CVSS3: 8.8
1%
Низкий
около 2 месяцев назад

Уязвимостей на страницу