CVE 5.1 MEDIUM

08CMS Novel System Template mtpls.inc.php code injection_CVE-2025-15250

5.1 / 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P

Description

A security vulnerability has been detected in 08CMS Novel System up to 3.4. This issue affects some unknown processing of the file admina/mtpls.inc.php of the component Template Handler. The manipulation leads to code injection. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.

Basic Information

ID CVE-2025-15250
Source VulDB
Published Dec 30, 2025 at 13:32

Affected Product

Vendor 08CMS
Product Novel System
Version 3.0
Affected Versions 08CMS Novel System 3.0
08CMS Novel System 3.1
08CMS Novel System 3.2
08CMS Novel System 3.3
08CMS Novel System 3.4

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.