Home
Description
Authenticated Remote Code Execution (RCE) in PluXml CMS 5.8.22 allows an attacker with administrator panel access to inject a malicious PHP webshell into a theme file (e.g., home.php).
References
github.com/RajChowdhury240/CVE-2025-67435/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.