Taisan Tarzan-CMS Deserialization Vulnerability in Add Theme Handler

Vulnerability

A critical deserialization vulnerability has been identified in Taisan Tarzan-CMS versions through 1.0.0. This issue arises in the Add Theme Handler component, specifically within the upload function of the admin themes section. The vulnerability can be exploited remotely, allowing for potential unauthorized actions or access.

Impact

Exploitation of this vulnerability could lead to remote code execution.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
6.6
remediation
0.0
relevance
0.0
threat
6.4
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.