VYPR
High severity8.8NVD Advisory· Published Apr 15, 2025· Updated Jun 17, 2026

CVE-2025-29281

CVE-2025-29281

Description

In PerfreeBlog version 4.0.11, regular users can exploit the arbitrary file upload vulnerability in the attach component to upload arbitrary files and execute code within them.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:perfree:perfreeblog:4.0.11:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:perfree:perfreeblog:4.0.11:*:*:*:*:*:*:*
    • (no CPE)range: 4.0.11
  • PerfreeBlog/PerfreeBlogdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.