CVE-2025-29058: An issue in Qimou CMS v.3.34.0 allows a remote attacker to execute arbitrary code via the upgrade.php component.

Description

An issue in Qimou CMS v.3.34.0 allows a remote attacker to execute arbitrary code via the upgrade.php component.

Classification

CVE ID: CVE-2025-29058

Affected Products

Vendor: n/a

Product: n/a

References

https://nvd.nist.gov/vuln/detail/CVE-2025-29058
https://cdn.wjlin0.com/halo-img/74CMSv3.34.0%E5%AD%98%E5%9C%A8%E6%96%87%E4%BB%B6%E8%AF%BB%E5%8F%96%E6%BC%8F%E6%B4%9E.zip

Timeline