An unrestricted file upload vulnerability in ShowDoc caused by improper validation of file extension allows execution of arbitrary PHP, leading to remote code execution.This issue affects ShowDoc: before 2.8.7.
Metrics
Affected Vendors & Products
References
History
Tue, 29 Apr 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 29 Apr 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 29 Apr 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An unrestricted file upload vulnerability in ShowDoc caused by improper validation of file extension allows execution of arbitrary PHP, leading to remote code execution.This issue affects ShowDoc: before 2.8.7. | |
| Title | ShowDoc Unauthenticated File Upload Remote Code Execution | |
| Weaknesses | CWE-434 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2025-04-29T19:35:37.829Z
Updated: 2025-04-29T20:41:34.177Z
Reserved: 2025-01-16T17:23:23.838Z
Link: CVE-2025-0520
Updated: 2025-04-29T20:41:25.436Z
Status : Awaiting Analysis
Published: 2025-04-29T20:15:25.230
Modified: 2025-05-02T13:53:40.163
Link: CVE-2025-0520
No data.