CVE-2026-25510 | ci4-cms-erp ci4ms prior 0.28.5.0 File Creation unrestricted upload (GHSA-gp56-f67f-m4px / EUVD-2026-5162)
A vulnerability was found in ci4-cms-erp ci4ms and classified as critical. This impacts an unknown function of the component File Creation Handler. The manipulation results in unrestricted upload.
This vulnerability is identified as CVE-2026-25510. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.