216.73.216.233

CVE-2025-69992

· Published 13/01/2026 16:16 · Modified 14/01/2026 16:26

Labels: CVE-2025-69992 2026-01-13CVE-2025-69992CWE-125[email protected]

Essential information

Published
13/01/2026 16:16
Modified
14/01/2026 16:26
Author
Creator
CVSS
9.8 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

phpgurukul News Portal Project V4.1 has File Upload Vulnerability via upload.php, which enables the upload of files of any format to the server without identity authentication.

NVD status

Status
Undergoing Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
phpgurukul / news portal project cpe:2.3:a:phpgurukul:news_portal_project:4.1:*:*:*:*:*:*:*

References