CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

CVE-2025-1106: CmsEasy database_admin.php restore_action path traversal

5.3 CVSS

Description

A vulnerability classified as critical has been found in CmsEasy 7.7.7.9. This affects the function deletedir_action/restore_action in the library lib/admin/database_admin.php. The manipulation leads to path traversal. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. Es wurde eine Schwachstelle in CmsEasy 7.7.7.9 entdeckt. Sie wurde als kritisch eingestuft. Betroffen hiervon ist die Funktion deletedir_action/restore_action in der Bibliothek lib/admin/database_admin.php. Durch das Manipulieren mit unbekannten Daten kann eine path traversal-Schwachstelle ausgenutzt werden. Umgesetzt werden kann der Angriff über das Netzwerk. Der Exploit steht zur öffentlichen Verfügung.

Classification

CVE ID: CVE-2025-1106

CVSS Base Severity: MEDIUM

CVSS Base Score: 5.3

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N

Affected Products

Vendor: n/a

Product: CmsEasy

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.07% (probability of being exploited)

EPSS Percentile: 33.01% (scored less or equal to compared to others)

EPSS Date: 2025-03-08 (when was this score calculated)

References

https://vuldb.com/?id.294939
https://vuldb.com/?ctiid.294939
https://vuldb.com/?submit.491518
https://github.com/Sinon2003/cve/blob/main/CmsEasy/CmsEasyPathTraversal-2.md

Timeline