CVE-2025-51958: OS Command Injection
aelsantex runcommand 2014-04-01, a plugin for DokuWiki, allows unauthenticated attackers to execute arbitrary system commands via lib/plugins/runcommand/postaction.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-51958?
CVE-2025-51958 is classified as a critical vulnerability due to its potential for unauthenticated command execution.
How do I fix CVE-2025-51958?
To fix CVE-2025-51958, it is recommended to update the runcommand plugin to the latest version that addresses this vulnerability.
What software is affected by CVE-2025-51958?
CVE-2025-51958 affects the runcommand plugin for DokuWiki, specifically versions released before the patch.
Who can exploit CVE-2025-51958?
CVE-2025-51958 can be exploited by unauthenticated attackers, allowing them to execute arbitrary system commands.
What are the implications of CVE-2025-51958 for my DokuWiki installation?
The implications of CVE-2025-51958 include potential unauthorized access to system functions, leading to severe security risks.