ShowDoc RCE Flaw CVE-2025-0520 Actively Exploited on Unpatched Servers
ID: 510a0cf8-8da7-536b-a107-6f4d5bd9c938
STIX ID: report--510a0cf8-8da7-536b-a107-6f4d5bd9c938
Feed Name: The Hacker News
Threat Score
A critical RCE vulnerability (CVE-2025-0520) in ShowDoc allows unauthenticated unrestricted file uploads enabling attackers to install PHP web shells. The flaw (CVSS 9.4) was patched in version 2.8.7 but is being actively exploited in the wild—evidence includes a dropped web shell on a U.S. honeypot—and more than 2,000 ShowDoc instances remain exposed; users are advised to update to the latest version.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
