CVE-2025-54757 Information

Description

Multiple versions of PowerCMS allow unrestricted upload of dangerous files. If a product administrator accesses a malicious file uploaded by a product user an arbitrary script may be executed on the browser.

Reference

https://jvn.jp/en/vu/JVNVU93412964/ https://www.powercms.jp/news/release-powercms-671-531-461.html

CNNVD-202507-3872 (Published: 2025-07-31)

Share on: