CVE-2025-55824

ModStartCMS v9.5.0 has an arbitrary file write vulnerability, which allows attackers to write malicious files and execute malicious commands to obtain sensitive data on the server.
References
Link Resource
https://gist.github.com/CTRLCCT/8f314998f30a95262e512b5417151ea1 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:modstart:mostartcms:9.5.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-09-02 18:15

Updated : 2025-09-05 18:06


NVD link : CVE-2025-55824

Mitre link : CVE-2025-55824

CVE.ORG link : CVE-2025-55824


JSON object : View

Products Affected

modstart

  • mostartcms
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')