CVE-2025-48106: WordPress Clanora theme < 1.3.1 - Arbitrary File Upload vulnerability
Unrestricted Upload of File with Dangerous Type vulnerability in CMSSuperHeroes Clanora clanora allows Using Malicious Files.This issue affects Clanora: from n/a through < 1.3.1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-48106?
CVE-2025-48106 is classified as a high severity vulnerability due to its potential for unauthorized file upload leading to system compromise.
How do I fix CVE-2025-48106?
To fix CVE-2025-48106, upgrade the CMSSuperHeroes Clanora to version 1.3.1 or later to mitigate the unrestricted file upload risk.
What type of vulnerability is CVE-2025-48106?
CVE-2025-48106 is an unrestricted upload of file with dangerous type vulnerability, allowing attackers to upload malicious files.
Which versions are affected by CVE-2025-48106?
CVE-2025-48106 affects all versions of CMSSuperHeroes Clanora before 1.3.1.
What could happen if CVE-2025-48106 is exploited?
Exploiting CVE-2025-48106 could allow attackers to upload malicious files, potentially leading to remote code execution or data breaches.