CVE-2025-25768

Publication date

2025-02-21 00:00:00

Family

mitre

State

PUBLISHED

Description

MRCMS v3.1.2 was discovered to contain a server-side template injection (SSTI) vulnerability in the component servletDispatcherServlet.java. This vulnerability allows attackers to execute arbitrary code via a crafted payload.