CNNVD-202509-1858 Information

CNNVD ID

CNNVD-202509-1858

CVE-2025-10398

  • CNNVD Published: 2025-09-14

Description (Chinese)

fcba_zzm ics-park是fcba_zzm公司的一个智慧园区管理系统。 fcba_zzm ics-park 2.0版本存在代码问题漏洞,该漏洞源于文件FileUploadUtils.java中对参数File的错误操作,可能导致任意文件上传。

Description (English)

fcba zzm ics-park is a smart park management system for fcba zzm. Fcba zzm ics-park 2.0 has a code problem loophole, which stems from the error in FileUpUtils.java ’ s parameter File, which could lead to any upload.

Hazard Level

High

Vulnerability Type

代码问题

Affected Vendor

fcba_zzm

Published

2025-09-14

Last Modified

2026-02-24

References

https://vuldb.com/?submit.646303 https://github.com/Yyjccc/CVE/issues/2 https://vuldb.com/?id.323833 https://vuldb.com/?ctiid.323833 https://access.redhat.com/security/cve/cve-2025-10398

Share on: