Medium severity5.4NVD Advisory· Published Feb 3, 2023· Updated Jun 17, 2026
CVE-2021-36425
CVE-2021-36425
Description
Directory traversal vulnerability in phpcms 1.9.25 allows remote attackers to delete arbitrary files via unfiltered $file parameter to unlink method in include/inc_act/act_ftptakeover.php file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- github.com/slackero/phpwcms/issues/311nvdExploitIssue TrackingPatchThird Party Advisory
News mentions
0No linked articles in our index yet.