Explore Vulnerabilities SQL Injection Cross-Site Scripting (XSS) Buffer Overflow Denial of Service Remote Code Execution Remote File Include Directory Traversal HTML Injection Stack Overflow Authentication Bypass
by: VeryLazyTech vendor: FoxCMS Show More Remote Code Execution in FoxCMS v.1.2.5 The exploit allows an attacker to execute remote code in FoxCMS v.1.2.5. By sending a specially crafted payload to the target, an attacker can run arbitrary commands on the system. This vulnerability is identified as CVE-2025-29306. 4.1 CVSS MEDIUM Remote Code Execution 94 CWE Product Name FoxCMS Platforms Tested Ubuntu 22.04, Windows Server 2019 Affected Version From: 1.2.2005 To: 1.2.2005 2025