CVE-2022-25018
Pluxml v5.8.7 was discovered to allow attackers to execute arbitrary code via crafted PHP code inserted into static pages.
- Affected products
- Pluxml
- Pluxml
- = 5.8.7
- CVSS 3.1
- 8.8 HIGH
- EPSS
- 2.7% (85th percentile)
- Weakness
- CWE-94
- NVD status
- Modified
- Published
- 2022-03-01
CVE-2022-25018 at NVD
1 known exploit for CVE-2022-25018
Proof-of-concept code and exploit modules indexed by Sploitus