CVE-2025-55911: Command Injection
Published Sep 18, 2025
·Updated
An issue Clip Bucket v.5.5.2 Build#90 allows a remote attacker to execute arbitrary codes via the filedownloader.php and the file parameter
Affected Software
2 affected components
Clip Bucket Clip Bucket=5.5.2
Oxygenz Clipbucket<5.5.2-90
Event History
Sep 16, 2025
Exploit Published
12:00 AM
Sep 18, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Oct 31, 2025
Known Exploited
06:46 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-55911?
CVE-2025-55911 is rated as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2025-55911?
To fix CVE-2025-55911, update Clip Bucket to version 5.5.2 Build#91 or later.
3
What impact does CVE-2025-55911 have on Clip Bucket 5.5.2?
CVE-2025-55911 allows attackers to execute arbitrary codes remotely through the file_downloader.php script.
4
Who is affected by CVE-2025-55911?
Any user or organization using Clip Bucket version 5.5.2 Build#90 is affected by CVE-2025-55911.
5
What components are involved in CVE-2025-55911?
CVE-2025-55911 involves the file_downloader.php component and its file parameter.