CNNVD-202512-3954 Information

CNNVD ID

CNNVD-202512-3954

CVE-2025-67288

  • CNNVD Published: 2025-12-22

Description (Chinese)

Umbraco CMS是丹麦Umbraco公司的一个内容管理系统。 Umbraco CMS v16.3.3版本存在安全漏洞,该漏洞源于上传特制PDF文件可能导致执行任意代码。

Description (English)

Umbraco CMS is a content management system for the Danish company Umbraco. The Umbraco CMS v16.3.3 version contains a security loophole, which stems from the possibility that uploading a special PDF file may result in the implementation of any code.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

Umbraco

Published

2025-12-22

Last Modified

2026-02-24

References

https://github.com/vuquyen03/CVE/tree/main/CVE-2025-67288 http://umbraco.com https://access.redhat.com/security/cve/cve-2025-67288

Patch

https://github.com/umbraco/Umbraco-CMS/releases

Share on: