Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 09 Dec 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:emlog:emlog:2.5.20:*:*:*:pro:*:*:* |
Tue, 09 Dec 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Emlog
Emlog emlog Emlog Pro Project Emlog Pro Project emlog Pro |
|
| Vendors & Products |
Emlog
Emlog emlog Emlog Pro Project Emlog Pro Project emlog Pro |
Mon, 08 Dec 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Mon, 08 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-24 | |
| Metrics |
cvssV3_1
|
Mon, 08 Dec 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Emlog Pro 2.5.20 has an arbitrary file deletion vulnerability. This vulnerability stems from the admin/template.php component and the admin/plugin.php component. They fail to perform path verification and dangerous code filtering for deletion parameters, allowing attackers to exploit this feature for directory traversal. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-12-08T21:47:59.749Z
Reserved: 2025-09-26T00:00:00.000Z
Link: CVE-2025-61318
Updated: 2025-12-08T19:44:33.314Z
Status : Analyzed
Published: 2025-12-08T16:15:52.703
Modified: 2025-12-09T16:17:50.223
Link: CVE-2025-61318
No data.
OpenCVE Enrichment
Updated: 2025-12-09T10:05:42Z