CVE-2021-36425

Publication date

2023-02-03 00:00:00

Family

mitre

State

PUBLISHED

Description

Directory traversal vulnerability in phpcms 1.9.25 allows remote attackers to delete arbitrary files via unfiltered $file parameter to unlink method in include/inc_act/act_ftptakeover.php file.