CVE-2025-9173
Unknown
Last modified
This CVE is reserved or rejected; no details have been published by NVD.
Description
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: The file upload in include/service/media.php verifies the file extension based on a list defined in include/lib/option.php. This whitelist prevents unrestricted uploads (e.g. PHP files). Therefore, the attack possibility is just of theoretical nature.
Timeline
- Published
- Last Modified
- Status
- Rejected
Related CVEs from 2025
- CVE-2025-9167A vulnerability has been found in SolidInvoice up to 2.4.0. …5.4
- CVE-2025-9168A vulnerability was found in SolidInvoice up to 2.4.0. This …5.4
- CVE-2025-9169A vulnerability was determined in SolidInvoice up to 2.4.0. …5.4
- CVE-2025-9170A vulnerability was identified in SolidInvoice up to 2.4.0. …5.4
- CVE-2025-9171A security flaw has been discovered in SolidInvoice up to 2.…5.4
- CVE-2025-9172The Vibes plugin for WordPress is vulnerable to time-based S…7.5
- CVE-2025-9174A vulnerability was determined in neurobin shc up to 4.0.3. …7.8
- CVE-2025-9175A vulnerability was identified in neurobin shc up to 4.0.3. …7.8
- CVE-2025-9176A security flaw has been discovered in neurobin shc up to 4.…7.8
- CVE-2025-9177A denial-of-service security issue exists in the affected pr…7.7
- CVE-2025-9178A denial-of-service security issue exists in the affected pr…7.7
- CVE-2025-9179An attacker was able to perform memory corruption in the GMP…9.8
Are you affected by CVE-2025-9173?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
