8.8
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description
An issue was discovered in Kiamo before 8.4 allowing authenticated administrative attackers to execute arbitrary PHP code on the server.
AI Analysis
Arbitrary PHP code execution vulnerability in Kiamo before 8.4
Basic Information
ID
CVE-2025-70364
Source
mitre
Published
Apr 9, 2026 at 00:00
Modified
Apr 14, 2026 at 16:35
Affected Product
Vendor
Kiamo
Product
Kiamo
Version
before 8.4
Affected Versions
n/a n/a n/a
CWE Classification
AI Assessment
AI Score
8.8 / 10
AI Severity
High
Vendor
Kiamo
Product
Kiamo
Version
before 8.4