CNNVD-202510-056 Information

CNNVD ID

CNNVD-202510-056

CVE-2025-59686

  • CNNVD Published: 2025-10-01

Description (Chinese)

Kazaar是Kazaar公司的一个印刷营销执行平台。 Kazaar 1.25.12版本存在安全漏洞,该漏洞源于允许修改order-id参数,可能导致不安全的直接对象引用攻击。

Description (English)

Kazaar is a printing and marketing implementation platform for Kazaar. There is a security loophole in version 1.25.12 of Kazaar, which stems from allowing for the modification of the order-id parameters, which may lead to unsafe direct-target reference attacks.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Kazaar

Published

2025-10-01

Last Modified

2026-02-24

References

https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2025-59686 https://www.kazaar.com/

Share on: