CVE-2025-15226

Publication date

2025-12-29 06:39:27

Family

twcert

State

PUBLISHED

Description

WMPro developed by Sunnet has a Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.