ScriptCase Vulnerabilities Allow Remote Code Execution and Full Server Compromise

Post Reply
Shane1145
Posts: 1836
Joined: Wed Sep 25, 2024 2:31 pm

ScriptCase Vulnerabilities Allow Remote Code Execution and Full Server Compromise

Post by Shane1145 »

Two critical vulnerabilities have been discovered in ScriptCase, a popular low-code PHP web application generator, which puts thousands of servers at risk of remote code execution and complete compromise.

The flaws, tracked as CVE-2025-47227 and CVE-2025-47228, affect the Production Environment module (also known as the “prod console”), which is commonly deployed alongside web applications for database and directory management, as per a report by Synacktiv.

https://gbhackers.com/scriptcase-vulnerabilities/
Post Reply