CNNVD-202507-2027 Information

CNNVD ID

CNNVD-202507-2027

CVE-2025-34108

  • CNNVD Published: 2025-07-15

Description (Chinese)

Flexense DiskPulse Enterprise是Flexense DiskPulse公司的一款集中式报告数据库服务器。 Flexense DiskPulse Enterprise 9.0.34版本存在安全漏洞,该漏洞源于登录功能边界检查不当,可能导致栈缓冲区溢出。

Description (English)

Flexense DiskPulse Enterprise is a centralized reporting database server for Flexense DiskPulse. There is a security loophole in version 9.034 of Flexense DiskPulse Enterprise, which stems from inadequate border checks of login functions, which could lead to an spill over the fence.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

Flexibits

Published

2025-07-15

Last Modified

2026-02-24

References

https://vulners.com/metasploit/MSF:EXPLOIT-WINDOWS-HTTP-DISK_PULSE_ENTERPRISE_BOF- https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/windows/ https://www.vulncheck.com/advisories/disk-pulse-enterprise-login-stack-buffer-overflow https://www.exploit-db.com/exploits/40452 https://advisories.checkpoint.com/defense/advisories/public/2017/cpai-2017-0006.html/ https://nvd.nist.gov/vuln/detail/CVE-2025-34108

Patch

https://www.diskpulse.com/downloads.html

Share on: