5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was identified in code-projects eBlog Site 1.0. Affected by this vulnerability is an unknown functionality of the file /native/admin/save-slider.php of the component File Upload Module. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Basic Information
ID
CVE-2025-8859
Source
VulDB
Published
Aug 11, 2025 at 14:32
Affected Product
Vendor
code-projects
Product
eBlog Site
Version
1.0
Affected Versions
code-projects eBlog Site 1.0