CNNVD-202509-2485 Information

CNNVD ID

CNNVD-202509-2485

CVE-2025-56289

  • CNNVD Published: 2025-09-16

Description (Chinese)

Code-Projects Document Management System是Code-Projects开源的一个文件管理系统。 Code-Projects Document Management System 1.0版本存在安全漏洞,该漏洞源于在添加文件时公司字段未对恶意跨站脚本代码进行过滤,可能导致管理员cookie信息泄露。

Description (English)

Code-Projects Documentation Management System is a file management system for the open source of Code-Projects. A security loophole exists in version 1.0 of Code-Project Document Management System, which results from the fact that the company field did not filter the malicious cross-site script code at the time the document was added, which could lead to the leaking of the administrator’s cookies.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Code::Blocks

Published

2025-09-16

Last Modified

2026-02-24

References

https://github.com/Chen1-Boop/CVE/blob/main/CVE-2025-56289.md http://code-projects.com https://access.redhat.com/security/cve/cve-2025-56289

Share on: