← Zuruck zu CVEs
CVE-2025-15067
HIGH7.7
Beschreibung
Unrestricted Upload of File with Dangerous Type vulnerability in Innorix Innorix WP allows Upload a Web Shell to a Web Server.This issue affects Innorix WP from All versions If the "exam" directory exists under the directory where the product is installed (ex: innorix/exam)
CVE Details
CVSS v3.1 Bewertung7.7
SchweregradHIGH
CVSS VektorCVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
AngriffsvektorLOCAL
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionNONE
Veroffentlicht12/29/2025
Zuletzt geandert12/29/2025
Quellenvd
Honeypot-Sichtungen0
Schwachen (CWE)
CWE-434
Referenzen
https://www.gnit.co.kr/software/innorix_product.html(09832df1-09c1-45b4-8a85-16c601d30feb)
https://www.innorix.com/(09832df1-09c1-45b4-8a85-16c601d30feb)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.