CNNVD-202506-3697 Information
Jun 29, 2025
cve
CNNVD ID
CNNVD-202506-3697
Related CVE
- CNNVD Published: 2025-06-29
Description (Chinese)
Code-Projects Simple Forum是Code-Projects开源的一个简易论坛。 Code-Projects Simple Forum 1.0版本存在路径遍历漏洞,该漏洞源于对文件/forum_downloadfile.php中参数filename的错误操作导致路径遍历。
Description (English)
Code-Projects Simple Forum is a simple open-source forum for Code-Projects. Version 1.0 of Code-Projects Simple Forum has a path-wide loophole, which results from an error in the parameter file/forum downloadfile.php.
Hazard Level
High
Vulnerability Type
路径遍历
Affected Vendor
Code-Projects
Published
2025-06-29
Last Modified
2026-02-24
References
https://code-projects.org/ https://vuldb.com/?submit.603581 https://vuldb.com/?id.314338 https://vuldb.com/?ctiid.314338 https://github.com/ez-lbz/poc/issues/22 https://access.redhat.com/security/cve/cve-2025-6866
Share on: