CNNVD-202509-3773 Information
Sep 23, 2025
cve
CNNVD ID
CNNVD-202509-3773
Related CVE
- CNNVD Published: 2025-09-23
Description (Chinese)
Weitong Mall(微同商城)是fuyang_lipengjun个人开发者的一个商场系统。 Weitong Mall(微同商城) 1.0版本存在授权问题漏洞,该漏洞源于文件/sys/smslog/queryAll中的SysSmsLogController函数存在授权不当,可能导致远程攻击。
Description (English)
Weitong Mall (Microbusiness) is a mall system for the personal developer of Fuyang lipengjun. Version 1.0 of Weitong Mall (Microbusiness) has a mandate gap, which stems from the inappropriate authorization of the SysSmsLogControll function in the document/sys/smslog/queryAll, which may lead to a remote attack.
Hazard Level
High
Vulnerability Type
授权问题
Affected Vendor
个人开发者
Published
2025-09-23
Last Modified
2026-02-24
References
https://vuldb.com/?ctiid.325179 https://vuldb.com/?submit.653743 https://www.cnblogs.com/aibot/p/19063462 https://vuldb.com/?id.325179 https://access.redhat.com/security/cve/cve-2025-10822
Share on: