PT-2025-53295 · Specto Cm · Specto Cm

Berk İmran

·

Published

2025-12-24

·

Updated

2025-12-24

·

CVE-2025-2155

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Specto CM versions prior to 17032025
Description Specto CM is susceptible to a flaw involving unrestricted file uploads, potentially leading to Remote Code Inclusion. The issue stems from the ability to upload files without proper restrictions on their type. This could allow an attacker to upload a malicious file and execute arbitrary code on the system.
Recommendations Update Specto CM to a version released on or after 17032025.

Fix

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

CVE-2025-2155

Affected Products

Specto Cm