Unrated severityNVD Advisory· Published Nov 18, 2025· Updated Nov 18, 2025
Possible arbitrary code execution
CVE-2025-41736
Description
A low privileged remote attacker can upload a new or overwrite an existing python script by using a path traversal of the target filename in php resulting in a remote code execution.
Affected products
3- Range: 0.0.0
- Range: 0.0.0
- Range: 0.0.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.