CVE-2025-54417
Craft contains a theoretical bypass for CVE-2025-23209
Severity Score
5.2
*CVSS v4
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
Track*
*SSVC
Descriptions
Craft is a platform for creating digital experiences. Versions 4.13.8 through 4.16.2 and 5.5.8 through 5.8.3 contain a vulnerability that can bypass CVE-2025-23209: "Craft CMS has a potential RCE with a compromised security key". To exploit this vulnerability, the project must meet these requirements: have a compromised security key and create an arbitrary file in Craft's /storage/backups folder. With those criteria in place, attackers could create a specific, malicious request to the /updater/restore-db endpoint and execute CLI commands remotely. This issue is fixed in versions 4.16.3 and 5.8.4.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
System
Vulnerable | Subsequent
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:Track*
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2025-07-21 CVE Reserved
- 2025-08-09 CVE Published
- 2025-08-11 CVE Updated
- 2025-08-15 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-94: Improper Control of Generation of Code ('Code Injection')
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://github.com/craftcms/cms/commit/a19d46be78a9ca1ea474012a10e97bed0d787f57 | X_refsource_misc | |
https://github.com/craftcms/cms/security/advisories/GHSA-2vcf-qxv3-2mgw | X_refsource_confirm |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Craftcms Search vendor "Craftcms" | Cms Search vendor "Craftcms" for product "Cms" | >= 4.13.8 < 4.16.3 Search vendor "Craftcms" for product "Cms" and version " >= 4.13.8 < 4.16.3" | en |
Affected
| ||||||
Craftcms Search vendor "Craftcms" | Cms Search vendor "Craftcms" for product "Cms" | >= 5.5.8 < 5.8.4 Search vendor "Craftcms" for product "Cms" and version " >= 5.5.8 < 5.8.4" | en |
Affected
|