CNNVD-202507-2549 Information

CNNVD ID

CNNVD-202507-2549

CVE-2025-7874

  • CNNVD Published: 2025-07-20

Description (Chinese)

Metasoft MetaCRM是中国美特软件(Metasoft)公司的一款客户关系管理系统软件。 Metasoft MetaCRM 6.4.2及之前版本存在安全漏洞,该漏洞源于文件/env.jsp处理不当导致信息泄露。

Description (English)

Metasoft MetaCRM is a CRM software for MetaSoft. There was a security loophole in Metasoft MetaCRM 6.4.2 and earlier versions, which resulted from improper handling of documents/env.jsp, which led to the disclosure of information.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

美特软件

Published

2025-07-20

Last Modified

2026-02-24

References

https://github.com/FightingLzn9/vul/blob/main/MetaCRM6-SIL-2.md https://vuldb.com/?submit.611045 https://vuldb.com/?id.316988 https://vuldb.com/?ctiid.316988 https://access.redhat.com/security/cve/cve-2025-7874 https://nvd.nist.gov/vuln/detail/CVE-2025-7874

Share on: