Beveiligingsadvies

CVE-2025-15228

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-12-29 07:18:59
Laatst bijgewerkt 2025-12-29 16:45:14
Toegewezen door twcert
CVSS-score 9.8
Status PUBLISHED

Beschrijving

BPMFlowWebkit developed by WELLTEND TECHNOLOGY has a Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.