CNNVD-202507-2511 Information

CNNVD ID

CNNVD-202507-2511

CVE-2025-7823

  • CNNVD Published: 2025-07-19

Description (Chinese)

Jinher OA是中国金和(Jinher)公司的一款协同管理软件。 Jinher OA 1.2版本存在代码问题漏洞,该漏洞源于对文件ProjectScheduleDelete.aspx的错误操作导致XML外部实体引用。

Description (English)

Jinher OA is a co-management software from Jinher China. There is a code breach in version Jinher OA 1.2, which stems from an error in the application of the project ScheduleDelete.aspx to the file that led to the reference of an external XML entity.

Hazard Level

Medium

Vulnerability Type

代码问题

Published

2025-07-19

Last Modified

2026-02-24

References

https://vuldb.com/?id.316924 https://vuldb.com/?ctiid.316924 https://github.com/cc2024k/CVE/issues/3 https://vuldb.com/?submit.616841 https://nvd.nist.gov/vuln/detail/CVE-2025-7823

Share on: