Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-23554 | LiquidFiles before 4.1.2 supports FTP SITE CHMOD for mode 6777 (setuid and setgid), which allows FTPDrop users to execute arbitrary code as root by leveraging the Actionscript feature and the sudoers configuration. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 07 Aug 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:liquidfiles:liquidfiles:*:*:*:*:*:*:*:* |
Tue, 05 Aug 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 05 Aug 2025 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Liquidfiles
Liquidfiles liquidfiles |
|
| Vendors & Products |
Liquidfiles
Liquidfiles liquidfiles |
Mon, 04 Aug 2025 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | LiquidFiles before 4.1.2 supports FTP SITE CHMOD for mode 6777 (setuid and setgid), which allows FTPDrop users to execute arbitrary code as root by leveraging the Actionscript feature and the sudoers configuration. | |
| Weaknesses | CWE-732 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-08-05T16:22:50.895Z
Reserved: 2025-04-22T00:00:00.000Z
Link: CVE-2025-46093
Updated: 2025-08-05T16:22:43.256Z
Status : Analyzed
Published: 2025-08-04T23:15:28.077
Modified: 2025-08-07T14:29:07.530
Link: CVE-2025-46093
No data.
OpenCVE Enrichment
Updated: 2025-08-05T07:35:03Z
EUVD