CVE-2025-34506 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

WBCE CMS version 1.6.3 and prior contains an authenticated remote code execution vulnerability that allows administrators to upload malicious modules. Attackers…
High CVSS: 8.6

CVE-2025-34506

WBCE CMS version 1.6.3 and prior contains an authenticated remote code execution vulnerability that allows administrators to upload malicious modules. Attackers can craft a specially designed ZIP module with embedded PHP reverse shell code to gain remote system access when the module is installed.
Vendor
Wbce
Product
Wbce Cms
CWE
CWE-434
Yayın Tarihi
2025-12-11 22:15:53
Güncelleme
2025-12-15 18:07:41
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar