CVE-2025-15067

🟡 Monitoruj

Nieograniczony upload niebezpiecznych plików w Innorix WP pozwala na wgranie powłoki sieciowej.

CVSS
7.7
EPSS
0.1%
Exploit
none
Vendor
Opis źródłowy (NVD)

Unrestricted Upload of File with Dangerous Type vulnerability in Innorix Innorix WP allows Upload a Web Shell to a Web Server.This issue affects Innorix WP from All versions If the "exam" directory exists under the directory where the product is installed (ex: innorix/exam)

brak Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS7.7
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.1%
Opublikowano (NVD)2025-12-29 01:15:53 UTC
Ostatnia modyfikacja (NVD)2026-10-07 12:10:00 UTC
Referencje