Home

Description

An issue in the restores method (DataBackup.php) of foxcms v2.0.6 allows attackers to execute a directory traversal.

PUBLISHED Reserved 2025-04-22 | Published 2025-05-05 | Updated 2025-05-13 | Assigner mitre

References

gitee.com/qianfox/foxcms/tree/V1.2.5/

gist.github.com/chao112122/350e1af42ccea185206f8a8b9e4906e1

cve.org (CVE-2025-45239)

nvd.nist.gov (CVE-2025-45239)

Download JSON