CNNVD-202506-3415 Information

CNNVD ID

CNNVD-202506-3415

CVE-2025-6753

  • CNNVD Published: 2025-06-27

Description (Chinese)

bicycleSharingServer是中国huija个人开发者的一个共享单车JavaWEB后台。 bicycleSharingServer 1.0版本存在注入漏洞,该漏洞源于AdminController.java文件中selectAdminByNameLike函数操作不当,可能导致SQL注入攻击。

Description (English)

BicycleSharingServer is a shared bicycle behind JavaWEB, a personal developer in Huija, China. There is an injection loophole in version 1.0 of BicycleSharingServer, which stems from the inappropriate operation of the SelfAdminByNameLike function in the AdminController.java document, which may lead to an SQL injection attack.

Hazard Level

High

Vulnerability Type

注入

Affected Vendor

Live Support

Published

2025-06-27

Last Modified

2026-02-24

References

https://github.com/huija/bicycleSharingServer/issues/4 https://vuldb.com/?ctiid.314051 https://vuldb.com/?id.314051 https://vuldb.com/?submit.597982

Share on: