Vulnerabilities (CVE)

Filtered by vendor Cmsmadesimple Subscribe
Filtered by product File Manager
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-63678 1 Cmsmadesimple 1 File Manager 2025-12-31 N/A 7.2 HIGH
An authenticated arbitrary file upload vulnerability in the /uploads/ endpoint of CMS Made Simple Foundation File Manager v2.2.22 allows attackers with Administrator privileges to execute arbitrary code via uploading a crafted PHP file.