CVE-2025-46080

MEDIUM

HuoCMS V3.5.1 - Unrestricted Upload of File with Dangerous Type via Whitelist Bypass

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2025-46080. PoCs published by yggcwhat.

AI-analyzed exploit summary This PoC demonstrates an arbitrary file rename vulnerability in HuoCMS <= V3.5.1, allowing an attacker to bypass suffix whitelist restrictions and achieve remote code execution by renaming a malicious file to a PHP extension.

Description

HuoCMS V3.5.1 has a File Upload Vulnerability. An attacker can exploit this flaw to bypass whitelist restrictions and craft malicious files with specific suffixes, thereby gaining control of the server.

Exploits (1)

nomisec WORKING POC
by yggcwhat · poc
https://github.com/yggcwhat/CVE-2025-46080

This PoC demonstrates an arbitrary file rename vulnerability in HuoCMS <= V3.5.1, allowing an attacker to bypass suffix whitelist restrictions and achieve remote code execution by renaming a malicious file to a PHP extension.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: HuoCMS <= V3.5.1
Auth required
Prerequisites: Valid authentication token · Ability to upload a file with a whitelisted suffix
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Scores

CVSS v3 5.3
EPSS 0.0036
EPSS Percentile 27.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-434
Status published
Products (1)
huocms/huocms 3.5.1
Published May 29, 2025
Tracked Since Feb 18, 2026