#VU106014 Arbitrary file upload in REDAXO - CVE-2025-27411


Vulnerability identifier: #VU106014

Vulnerability risk: Medium

CVSSv4.0: 7.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P/U:Green]

CVE-ID: CVE-2025-27411

CWE-ID: CWE-434

Exploitation vector: Network

Exploit availability: Yes

Vulnerable software:
REDAXO
Web applications / CRM systems

Vendor: REDAXO

Description

The vulnerability allows a remote attacker to compromise vulnerable system.

The vulnerability exists due to insufficient validation of file during file upload in mediapool page. A remote user can upload a malicious file and execute it on the server.

Mitigation
Install update from vendor's website.

Vulnerable software versions

REDAXO: 5.0.0 - 5.18.2


External links
https://github.com/redaxo/redaxo/commit/3b2159bb45da0ab6cfaef5c8cf8b602ee5e2fb37
https://github.com/redaxo/redaxo/security/advisories/GHSA-wppf-gqj5-fc4f


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote authenticated user via the Internet.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability. However, proof of concept for this vulnerability is available.


Latest bulletins with this vulnerability