CVE-2025-8859: code-projects eBlog Site File Upload save-slider.php unrestricted upload
A vulnerability was identified in code-projects eBlog Site 1.0. Affected by this vulnerability is an unknown functionality of the file /native/admin/save-slider.php of the component File Upload Module. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8859?
CVE-2025-8859 is considered a high severity vulnerability due to its potential for remote exploitation.
How do I fix CVE-2025-8859?
To fix CVE-2025-8859, ensure you restrict file uploads in the affected file /native/admin/save-slider.php.
What is the impact of CVE-2025-8859?
The impact of CVE-2025-8859 allows attackers to perform unrestricted file uploads, which may lead to further compromise.
Which component is affected by CVE-2025-8859?
CVE-2025-8859 affects the File Upload Module of the code-projects eBlog Site 1.0.
Can CVE-2025-8859 be exploited remotely?
Yes, CVE-2025-8859 can be exploited remotely, making it a significant threat.