Security Advisory

CVE-2025-11023

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-10-23 12:32:31
Last updated 2026-06-04 19:49:53
Assigner TR-CERT
CVSS score 9.8
State PUBLISHED

Description

Inclusion of Functionality from Untrusted Control Sphere, Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ArkSigner Software and Hardware Inc. AcBakImzala allows PHP Local File Inclusion. This issue affects AcBakImzala: before v5.1.4.