PT-2025-31487 · Powercms · Powercms
Do Ich Nam
+5
·
Published
2025-07-31
·
Updated
2025-07-31
·
CVE-2025-54752
CVSS v3.1
6.5
Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L |
RCE
Weakness Enumeration
Related Identifiers
Affected Products
Powercms
Do Ich Nam
+5
·
Published
2025-07-31
·
Updated
2025-07-31
·
CVE-2025-54752
6.5
Medium
Base vector | Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions:
PowerCMS (affected versions not specified)
Description:
Multiple versions of PowerCMS improperly neutralize formula elements within a CSV file. A malicious user can create a crafted CSV entry. If a victim user downloads and opens this file in their environment, the embedded code may be executed.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE