Report: CVE-2019-25480 - ARMBot Unrestricted File Upload via upload.php

Report: CVE-2019-25480 - ARMBot Unrestricted File Upload via upload.php

CVE ID :CVE-2019-25480 Published : March 11, 2026, 6:23 p.m. | 1 hour, 2 minutes ago Description :ARMBot contains an unrestricted file upload vulnerability in upload.php that allows unauthenticated attackers to upload arbitrary files by manipulating the file parameter with path traversal sequences. Attackers can upload PHP files with traversal payloads ../public_html/ to write executable code to the web root and achieve remote code execution. Severity: 8.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
March 11, 2026
Affected Product: php
Impact: path traversal