CVE-2025-25761

CVSS v3 Score
7.2
High

Vulnerability Description

HkCms v2.3.2.240702 was discovered to contain an arbitrary file write vulnerability in the component Appcenter.php.

CVSS:7.2(High)

An OS command injection and external control of filename vulnerability in Palo Alto Networks PAN-OS allows authenticated administrators to execute code with root privileges or delete arbitrary system ...

CWE-732020
CVSS:7.2(High)

An external control of filename vulnerability in the SD WAN component of Palo Alto Networks PAN-OS Panorama allows an authenticated administrator to send a request that results in the creation and wri...

CWE-732020
CVSS:7.2(High)

External Control of File Name or Path in GitHub repository unilogies/bumsys prior to 2.2.0.

CWE-732023
CVSS:7.2(High)

A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow a privileged user to upload generic files to the root installation directory of the system. ...

CWE-732024
CVSS:7.2(High)

A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow a privileged user to upload firmware files to the root installation directory of the system....

CWE-732024
CVSS:7.2(High)

A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The bulk import feature of the affected systems allow a privileged user to upload files to the root installation direct...

CWE-732024