Metrics
Affected Vendors & Products
Fri, 09 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 09 Jan 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in BiggiDroid Simple PHP CMS 1.0. This impacts an unknown function of the file /admin/editsite.php. The manipulation of the argument image results in unrestricted upload. The attack can be launched remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | BiggiDroid Simple PHP CMS editsite.php unrestricted upload | |
| Weaknesses | CWE-284 CWE-434 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-01-09T17:02:09.494Z
Updated: 2026-01-10T09:04:48.822Z
Reserved: 2026-01-09T11:36:37.798Z
Link: CVE-2025-15495
Updated: 2026-01-09T17:46:42.815Z
Status : Received
Published: 2026-01-09T17:15:52.357
Modified: 2026-01-09T19:16:06.130
Link: CVE-2025-15495
No data.