VYPR
Medium severity6.5NVD Advisory· Published Oct 10, 2025· Updated Jul 5, 2026

CVE-2025-60838

CVE-2025-60838

Description

An arbitrary file upload vulnerability in MCMS v6.0.1 allows attackers to execute arbitrary code via uploading a crafted file.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Mcms/MCMSllm-fuzzy
    Range: = 6.0.1
  • Mingsoft/Mcmsllm-fuzzy2 versions
    = 6.0.1+ 1 more
    • (no CPE)range: = 6.0.1
    • cpe:2.3:a:mingsoft:mcms:*:*:*:*:*:*:*:*range: <=6.0.1
  • MCMS/MCMSdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.