The Hacker Wire@TheHackerWireDisclosure
The post announces CVE-2025-59818, describing a critical authenticated RCE vulnerability that allows attackers to execute arbitrary commands via the file name of an uploaded file. No PoC, exploit code, active exploitation, patch, or false positive claims are provided.
CVE@CVEnewDisclosure
The CVE-2025-59818 vulnerability allows authenticated attackers to execute arbitrary commands by manipulating the filename of an uploaded file, but no PoC, exploit, or patch details are provided.
CRAC Learning - Tech@cracbotDisclosure
The post announces CVE‑2025‑59818, a critical authenticated remote code execution flaw, with basic technical details but no PoC, exploit, or patch information.
CVEFind.com@CveFindComDisclosure
The post announces CVE-2025-59818, a critical flaw allowing authenticated attackers to run arbitrary commands through uploaded file names, with no PoC, exploit, or patch details provided.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
A new authenticated command injection vulnerability (CVE‑2025‑59818) affecting a file upload mechanism has been disclosed, but no PoC, exploit, or patch information is provided.
0day Signal@0dayPublishingDisclosure
The post announces CVE-2025-59818, detailing an authenticated filename parameter injection that leads to RCE in Zenitel TCIS-3+, but provides no PoC, exploit code, patches, or evidence of active exploitation.