VYPR
Unrated severityNVD Advisory· Published Nov 18, 2025· Updated Nov 18, 2025

Possible arbitrary code execution

CVE-2025-41736

Description

A low privileged remote attacker can upload a new or overwrite an existing python script by using a path traversal of the target filename in php resulting in a remote code execution.

Affected products

3

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.