CVE-2025-9173

N/A Unknown
Published: August 20, 2025 Modified: January 08, 2026

Description

Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: The file upload in include/service/media.php verifies the file extension based on a list defined in include/lib/option.php. This whitelist prevents unrestricted uploads (e.g. PHP files). Therefore, the attack possibility is just of theoretical nature.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References

No references available. Run a sync to fetch reference data.

Quick Stats

CVSS v3 Score
N/A / 10.0
Exploitation Status
Not in CISA KEV