Skip to main content

Incomplete Cleanup

CVE-2025-55910

Severity Medium
Score 6.3/10

Summary

CMSEasy v7.7.8.0 and before is vulnerable to Arbitrary file deletion in database_admin.php.

  • LOW
  • NETWORK
  • LOW
  • UNCHANGED
  • REQUIRED
  • NONE
  • LOW
  • LOW

CWE-459 - Incomplete Cleanup

The software does not properly "clean up" and remove temporary or supporting resources after they have been used.

References

Advisory Timeline

  • Published