CVE-2025-45317 Information
Aug 14, 2025
cve
Description
A zip slip vulnerability in the /modules/ImportModule.php component of hortusfox-web v4.4 allows attackers to execute arbitrary code via a crafted archive.
Reference
https://github.com/chrisWalker11/Cves/blob/main/CVE-2025-45317/CVE-2025-45317.md https://github.com/danielbrendel/hortusfox-web/blob/8ab851101a62d8eb311235c118eeeb32a9b36978/app/modules/ImportModule.php#L28
Related CNNVD
CNNVD-202508-1421 (Published: 2025-08-13)
Share on: