CNNVD-202508-259 Information

CNNVD ID

CNNVD-202508-259

CVE-2025-50754

  • CNNVD Published: 2025-08-04

Description (Chinese)

Unisite CMS是俄罗斯Unisite公司的一个内容管理系统。 Unisite CMS 5.0版本存在安全漏洞,该漏洞源于报告功能存在存储型跨站脚本,可能导致管理员会话劫持和远程代码执行。

Description (English)

Unisite CMS is a content management system of Unisite Russia. There is a security loophole in version 5.0 of Unite CMS, which stems from the existence of a storage-type cross-site script for the reporting function, which may lead to the hijacking of the administrator and remote code execution.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

Unisite

Published

2025-08-04

Last Modified

2026-02-24

References

https://tataxon.uz https://github.com/furk4nyildiz/CVE-2025-50754-PoC https://imgur.com/a/rwfMlyq https://access.redhat.com/security/cve/cve-2025-50754

Patch

https://unisite.org/service/update

Share on: