Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: The file upload in include/service/media.php verifies the file extension based on a list defined in include/lib/option.php. This whitelist prevents unrestricted uploads (e.g. PHP files). Therefore, the attack possibility is just of theoretical nature.
CVSS
No CVSS.
References
No reference.
Configurations
No configuration.
History
No history.
Information
Published : 2025-08-20 11:15
Updated : 2026-01-08 09:15
NVD link : CVE-2025-9173
Mitre link : CVE-2025-9173
CVE.ORG link : CVE-2025-9173
JSON object : View
Products Affected
No product.
CWE
No CWE.
