CNNVD-202509-2514 Information

CNNVD ID

CNNVD-202509-2514

CVE-2025-55834

  • CNNVD Published: 2025-09-16

Description (Chinese)

JeeWMS是中国华壹(JeeWMS)公司的一个基于 JAVA 的仓库管理系统。 JeeWMS 3.7及之前版本存在安全漏洞,该漏洞源于logController.do组件存在跨站脚本漏洞,可能导致敏感信息泄露。

Description (English)

JeeWMS is a warehouse management system based on JAVA. JeeWMS 3.7 and earlier versions had a security loophole, which stemmed from the cross-site script gap of the logController.do component, which could lead to the disclosure of sensitive information.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

华壹

Published

2025-09-16

Last Modified

2026-02-24

References

https://github.com/RrEeSeEeTt/CVEs/blob/main/JeeWMS-xss.md https://access.redhat.com/security/cve/cve-2025-55834

Share on: