CVE-2025-9173

Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: The file upload in include/service/media.php verifies the file extension based on a list defined in include/lib/option.php. This whitelist prevents unrestricted uploads (e.g. PHP files). Therefore, the attack possibility is just of theoretical nature.
CVSS

No CVSS.

References

No reference.

Configurations

No configuration.

History

No history.

Information

Published : 2025-08-20 11:15

Updated : 2026-01-08 09:15


NVD link : CVE-2025-9173

Mitre link : CVE-2025-9173

CVE.ORG link : CVE-2025-9173


JSON object : View

Products Affected

No product.

CWE

No CWE.