Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
Contact the vendor to install patches and adjust system settings.
Workaround
No workaround given by the vendor.
Wed, 31 Dec 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:sun.net:wmpro:*:*:*:*:*:*:*:* |
Mon, 29 Dec 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sun.net
Sun.net wmpro |
|
| Vendors & Products |
Sun.net
Sun.net wmpro |
Mon, 29 Dec 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 29 Dec 2025 07:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | WMPro developed by Sunnet has a Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server. | |
| Title | Sunnet|WMPro - Arbitrary File Upload | |
| Weaknesses | CWE-434 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-12-29T14:34:29.835Z
Reserved: 2025-12-29T06:12:32.559Z
Link: CVE-2025-15226
Updated: 2025-12-29T14:34:27.341Z
Status : Analyzed
Published: 2025-12-29T07:15:56.567
Modified: 2025-12-31T20:53:21.230
Link: CVE-2025-15226
No data.
OpenCVE Enrichment
Updated: 2025-12-29T23:03:50Z