CNNVD-202507-2708 Information

CNNVD ID

CNNVD-202507-2708

CVE-2025-52362

  • CNNVD Published: 2025-07-21

Description (Chinese)

phproxy是PHProxy开源的一个基于PHP的web代理软件。 phproxy 1.1.1及之前版本存在安全漏洞,该漏洞源于对_proxurl参数输入验证不足,可能导致服务端请求伪造攻击。

Description (English)

phproxy is a PHProxy-based web-agent software. phproxy 1.1.1 and previous versions contain a security loophole, which stems from inadequate verification of proxurl parameters, which may lead to the service requesting a false attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

PHProxy

Published

2025-07-21

Last Modified

2026-02-24

References

https://gist.github.com/Shulelk/a18c11866be8609b22ff5df780a42422 https://github.com/PHProxy/phproxy https://access.redhat.com/security/cve/cve-2025-52362

Share on: