Subscriptions
Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 31 Dec 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cmsmadesimple
Cmsmadesimple file Manager |
|
| CPEs | cpe:2.3:a:cmsmadesimple:file_manager:2.2.22:*:*:*:*:*:*:* | |
| Vendors & Products |
Cmsmadesimple
Cmsmadesimple file Manager |
Wed, 19 Nov 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cms Made Simple
Cms Made Simple cms Made Simple |
|
| Vendors & Products |
Cms Made Simple
Cms Made Simple cms Made Simple |
Wed, 12 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-434 | |
| Metrics |
cvssV3_1
|
Mon, 10 Nov 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authenticated arbitrary file upload vulnerability in the /uploads/ endpoint of CMS Made Simple Foundation File Manager v2.2.22 allows attackers with Administrator privileges to execute arbitrary code via uploading a crafted PHP file. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-11-12T20:25:12.631Z
Reserved: 2025-10-27T00:00:00.000Z
Link: CVE-2025-63678
Updated: 2025-11-12T20:24:58.087Z
Status : Analyzed
Published: 2025-11-10T23:15:41.700
Modified: 2025-12-31T17:56:57.773
Link: CVE-2025-63678
No data.
OpenCVE Enrichment
Updated: 2025-11-19T10:48:11Z