CNNVD-202507-3901 Information

CNNVD ID

CNNVD-202507-3901

CVE-2013-10035

  • CNNVD Published: 2025-07-31

Description (Chinese)

ProcessMaker Open Source是美国ProcessMaker公司的一个工作流管理软件。 ProcessMaker Open Source 2.0.23至2.5.1版本存在安全漏洞,该漏洞源于多个端点未验证用户输入,可能导致远程代码执行。

Description (English)

ProcssMaker Open Source is a workflow management software for ProcssMaker in the United States. There is a security loophole in Releases 2.0.23 to 2.5.1, which originates from multiple endpoints that have not been validated for user input and may lead to remote code execution.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

ProcessMaker

Published

2025-07-31

Last Modified

2026-02-24

References

https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/multi/ https://bugs.processmaker.com/view.php?id=13436 https://web.archive.org/web/20150419043936/ https://www.exploit-db.com/exploits/29325 https://www.fortiguard.com/encyclopedia/ips/37390 https://www.vulncheck.com/advisories/processmaker-open-source-neoclassic-skin-php-code-execution

Patch

https://www.processmaker.com/

Share on: