CNNVD-202509-3678 Information

CNNVD ID

CNNVD-202509-3678

CVE-2025-5717

  • CNNVD Published: 2025-09-23

Description (Chinese)

WSO2 Identity Server(IS)是美国WSO2公司的一款身份认证服务器。 WSO2 Identity Server(IS)存在安全漏洞,该漏洞源于事件处理器管理服务输入验证不当,可能导致远程代码执行。

Description (English)

WO2 Infrastructure Server (IS) is an identification server for WSO2 in the United States. WO2 Environmental Server (IS) has a security loophole, which stems from inadequate validation of event processor management service input, which may lead to remote code implementation.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

WSO2

Published

2025-09-23

Last Modified

2026-02-24

References

https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2025/WSO2-2025-4119/

Patch

https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2025/WSO2-2025-4119/

Share on: