CNNVD-202510-034 Information

CNNVD ID

CNNVD-202510-034

CVE-2025-28357

  • CNNVD Published: 2025-10-01

Description (Chinese)

Neto CMS是澳大利亚Neto公司的一个电子商务平台。 Neto CMS v6.313.0版本至v6.314.0版本存在安全漏洞,该漏洞源于特制HTTP请求导致CRLF注入,可能执行任意代码。

Description (English)

Neto CMS is an e-commerce platform for Neto Australia. Neto CMS v. 6.313.0 to v. 6.314.0 had a security loophole, which arose out of a specially designed HTTP request leading to an injection of CRLF, which could be performed by any code.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Neto

Published

2025-10-01

Last Modified

2026-02-24

References

http://neto.com https://github.com/ShadowByte1/CVE-Reports/blob/main/CVE-2025-28357.md

Share on: