CNNVD-202509-1858 Information
Sep 14, 2025
cve
CNNVD ID
CNNVD-202509-1858
Related CVE
- CNNVD Published: 2025-09-14
Description (Chinese)
fcba_zzm ics-park是fcba_zzm公司的一个智慧园区管理系统。 fcba_zzm ics-park 2.0版本存在代码问题漏洞,该漏洞源于文件FileUploadUtils.java中对参数File的错误操作,可能导致任意文件上传。
Description (English)
fcba zzm ics-park is a smart park management system for fcba zzm. Fcba zzm ics-park 2.0 has a code problem loophole, which stems from the error in FileUpUtils.java ’ s parameter File, which could lead to any upload.
Hazard Level
High
Vulnerability Type
代码问题
Affected Vendor
fcba_zzm
Published
2025-09-14
Last Modified
2026-02-24
References
https://vuldb.com/?submit.646303 https://github.com/Yyjccc/CVE/issues/2 https://vuldb.com/?id.323833 https://vuldb.com/?ctiid.323833 https://access.redhat.com/security/cve/cve-2025-10398
Share on: