ElkArte Forum 1.1.9 contains a remote code execution vulnerability that allows authenticated administrators to upload malicious PHP files through the theme installation process. Attackers can upload a ZIP archive with a PHP file containing system commands, which can then be executed by accessing the uploaded file in the theme directory.
History

Tue, 16 Dec 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 12 Dec 2025 09:00:00 +0000

Type Values Removed Values Added
First Time appeared Elkarte
Elkarte forum
Vendors & Products Elkarte
Elkarte forum

Thu, 11 Dec 2025 21:45:00 +0000

Type Values Removed Values Added
Description ElkArte Forum 1.1.9 contains a remote code execution vulnerability that allows authenticated administrators to upload malicious PHP files through the theme installation process. Attackers can upload a ZIP archive with a PHP file containing system commands, which can then be executed by accessing the uploaded file in the theme directory.
Title ElkArte Forum 1.1.9 Authenticated Remote Code Execution via Theme Upload
Weaknesses CWE-434
References
Metrics cvssV4_0

{'score': 8.6, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2025-12-16T16:31:32.926Z

Reserved: 2025-12-11T00:58:28.456Z

Link: CVE-2024-58295

cve-icon Vulnrichment

Updated: 2025-12-16T16:20:56.406Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-12-11T22:15:50.583

Modified: 2025-12-12T15:17:31.973

Link: CVE-2024-58295

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-12-12T08:49:43Z