CVE-2025-46099

CVE Details

Basic Information

Title CVE-2025-46099
Type cve
Published 2025-07-23T14:15:33
Last Seen 2025-07-23T14:22:25
Modified 2025-07-23T14:15:33

CVSS Information

Base Score 7.1 (HIGH)
Attack Vector CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N

Additional Information

CVE List CVE-2025-46099
CWE List CWE-434
Bulletin Family cve

Description

In Pluck CMS 4.7.20-dev, an authenticated attacker can upload or create a crafted PHP file under the albums module directory and access it via the module routing logic in albums.site.php, resulting in arbitrary command execution through…

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.