CVE-2025-25791
26.02.2025, 15:15
An arbitrary file upload vulnerability in the plugin installation feature of YZNCMS v2.0.1 allows attackers to execute arbitrary code via uploading a crafted Zip file.
| Vendor | Product | Version |
|---|---|---|
| yzncms | yzncms | 2.0.1 |
𝑥
= Vulnerable software versions