Cadmium CMS v.0.4.9 has a background arbitrary file upload vulnerability in /admin/content/filemanager/uploads.
References
| Link | Resource |
|---|---|
| https://github.com/cadmium-org/cadmium-cms/issues/23 | Exploit Issue Tracking |
Configurations
History
06 Jan 2026, 17:26
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/cadmium-org/cadmium-cms/issues/23 - Exploit, Issue Tracking | |
| CPE | cpe:2.3:a:cadmium-cms:cadmium_cms:0.4.9:*:*:*:*:*:*:* | |
| First Time |
Cadmium-cms
Cadmium-cms cadmium Cms |
23 Dec 2025, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-434 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
23 Dec 2025, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-23 18:15
Updated : 2026-01-06 17:26
NVD link : CVE-2025-51511
Mitre link : CVE-2025-51511
CVE.ORG link : CVE-2025-51511
JSON object : View
Products Affected
cadmium-cms
- cadmium_cms
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
