Medium severity6.5NVD Advisory· Published Jul 18, 2025· Updated Jun 17, 2026
CVE-2025-46000
CVE-2025-46000
Description
An arbitrary file upload vulnerability in the component /rsc/filemanager.rsc.class.php of Filemanager commit c75b914 v.2.5.0 allows attackers to execute arbitrary code via uploading a crafted SVG file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:simogeo:filemanager:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:simogeo:filemanager:*:*:*:*:*:*:*:*range: <=2.5.0
- (no CPE)range: v.2.5.0
- Filemanager/Filemanagerdescription
Patches
Vulnerability mechanics
References
2- github.com/simogeo/Filemanager/commit/c75b914nvdPatch
- github.com/zakumini/CVE-List/blob/main/CVE-2025-46000/CVE-2025-46000.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.