PT-2025-30728 · Chancms · Chancms

·

CVE-2025-8132

·

Publicado

2025-07-25

·

Atualizado

2025-07-25

CVSS v2.0

5.5

Média

VetorAV:N/AC:L/Au:S/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions yanyutao0402 ChanCMS versions up to 3.1.2
Description A path traversal issue exists in the delfile function of the app/extend/utils.js file. This issue may be exploited remotely. The exploit has been publicly disclosed.
Recommendations Upgrade to version 3.1.3 to address this issue. The patch identifier is c8a282bf02a62b59ec60b4699e91c51aff2ee9cd.

Exploit

Correção

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-8132

Produtos afetados

Chancms