AI description
CVE-2025-29306 is a vulnerability found in FoxCMS version 1.2.5. It allows a remote attacker to execute arbitrary code through the "case display page" located in the `index.html` component. Specifically, the vulnerability resides within the FoxCMS software. An unauthenticated, remote attacker can exploit this vulnerability to inject and execute arbitrary code on the system by accessing the case display page.
- Description
- An issue in FoxCMS v.1.2.5 allows a remote attacker to execute arbitrary code via the case display page in the index.html component.
- Source
- cve@mitre.org
- NVD status
- Undergoing Analysis
CVSS 3.1
- Type
- Secondary
- Base score
- 9.8
- Impact score
- 5.9
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- CRITICAL
- 134c704f-9b21-4f2e-91b3-4a467353bcc0
- CWE-94
Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.
- Hype score
10
Top 5 Trending CVEs: 1 - CVE-2025-43859 2 - CVE-2025-31324 3 - CVE-2024-27876 4 - CVE-2025-32432 5 - CVE-2025-29306 #cve #cvetrends #cveshield #cybersecurity https://t.co/4Fua3CAN6W
@CVEShield
27 Apr 2025
15 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-29306 - FoxCMS Remote Code Execution Exploit. Remote code execution vulnerability in FoxCMS. This tool allows testing single targets or scanning multiple hosts in bulk. https://t.co/vaBIYfDP1u https://t.co/JCJnZvD06L
@cyber_advising
26 Apr 2025
2998 Impressions
25 Retweets
62 Likes
26 Bookmarks
0 Replies
0 Quotes
🚨 CVE-2025-29306 - critical 🚨 FoxCMS v.1.2.5 - Remote Code Execution > An issue in FoxCMS v.1.2.5 allows a remote attacker to execute arbitrary code via the... 👾 https://t.co/W0rbTekYil @pdnuclei #NucleiTemplates #cve
@pdnuclei_bot
23 Apr 2025
19 Impressions
0 Retweets
0 Likes
1 Bookmark
0 Replies
0 Quotes
POC - CVE-2025-29306 FOXCMS / Code Execution Vulnerability https://t.co/exeNBVFZ9K
@MatthewThomz
17 Apr 2025
34 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:foxcms:foxcms:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1EB18EC9-B9F3-4B18-BF1C-D09B20463740",
"versionEndExcluding": "1.2.00"
}
],
"operator": "OR"
}
]
}
]