Alerts
Events
DCR
Explore Cyware Products
Alerts
Events
DCR
Go to listing page
[KIS-2025-01] UNA CMS
Malware and Vulnerabilities
April 18, 2025
Seclists
A critical PHP Object Injection vulnerability (CVE-2025-32101) has been identified in UNA CMS versions 14.0.0-RC4. The flaw resides in the BxBaseMenuSetAclLevel.php script and allows unauthenticated remote attackers to inject arbitrary PHP objects.
Read More
CVE-2025-32101
PHP Object Injection vulnerability
UNA CMS
Publisher
Previous
Critical CVE-2025-32445 Vulnerability in Argo Events Sc ...
Malware and Vulnerabilities
Next
Malicious npm Package Disguised as Advcash Integration ...
Malware and Vulnerabilities