PT-2025-29142 · Unknown+1 · Jquery File Upload+2

Metanubix

·

Published

2025-07-10

·

Updated

2025-07-11

·

CVE-2025-34100

CVSS v4.0

9.3

Critical

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions: BuilderEngine version 3.5.0
Description: An unrestricted file upload issue exists due to the integration of elFinder 2.0 and the jQuery File Upload plugin. The plugin does not properly validate or restrict file types or locations during upload operations. This allows an attacker to upload a malicious .php file and execute arbitrary PHP code on the server under the context of the web server process. The vulnerability is exposed to unauthenticated users, resulting in full remote code execution.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

RCE

Missing Authentication

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

BDU:2025-14618
CVE-2025-34100

Affected Products

Builderengine
Elfinder
Jquery File Upload