CNNVD-202508-3205 Information

CNNVD ID

CNNVD-202508-3205

CVE-2025-51667

  • CNNVD Published: 2025-08-27

Description (Chinese)

admin-console是Sequent开源的一个 Agora 核心视图管理界面。 admin-console v1.2.0至v1.6.7版本存在安全漏洞,该漏洞源于/sys-api/role/update接口处理不当,可能导致SQL注入攻击。

Description (English)

Admin-console is an Agora core view management interface for Sequent ’s open source. There is a security loophole in versions admin-console v1.2.0 to v1.6.7, which stems from the mishandling of the interface/sys-api/role/update, which could lead to an injection of SQL.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Sequent

Published

2025-08-27

Last Modified

2026-02-24

References

https://github.com/suyuan32/simple-admin-core/issues/333 https://gist.github.com/66Giraffe66/fc258f7fcc65a6a1a1a01e217977b92d https://nvd.nist.gov/vuln/detail/CVE-2025-51667

Patch

https://github.com/suyuan32/simple-admin-core/releases

Share on: