Логотип exploitDog
bind:CVE-2025-64050
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-64050

Количество 2

Количество 2

nvd логотип

CVE-2025-64050

3 месяца назад

A Remote Code Execution (RCE) vulnerability in the template management component in REDAXO CMS 5.20.0 allows remote authenticated administrators to execute arbitrary operating system commands by injecting PHP code into an active template. The payload is executed when visitors access frontend pages using the compromised template.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-xj9j-gjxg-7jvq

3 месяца назад

REDAXO CMS is vulnerable to RCE attack through its template management component

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-64050

A Remote Code Execution (RCE) vulnerability in the template management component in REDAXO CMS 5.20.0 allows remote authenticated administrators to execute arbitrary operating system commands by injecting PHP code into an active template. The payload is executed when visitors access frontend pages using the compromised template.

CVSS3: 7.2
0%
Низкий
3 месяца назад
github логотип
GHSA-xj9j-gjxg-7jvq

REDAXO CMS is vulnerable to RCE attack through its template management component

CVSS3: 7.2
0%
Низкий
3 месяца назад

Уязвимостей на страницу