CNNVD-202510-1169 Information

CNNVD ID

CNNVD-202510-1169

CVE-2025-10352

  • CNNVD Published: 2025-10-08

Description (Chinese)

Melis Platform是Melis Platform开源的一个开源跨框架数字平台。 Melis Platform存在安全漏洞,该漏洞源于melis-core模块,未经验证的攻击者可通过请求/melis/MelisCore/ToolUser/addNewUser创建管理员账户,可能导致权限提升。

Description (English)

Melis Platform is an open-source cross-frame digital platform from the Melis Platform open source. There is a security loophole in Melis Platform, which originates from the melis-core module, where uncertified assailants can create administrator accounts by requesting/melis/MelisCore/ToolUser/addNewUser, which may lead to enhanced privileges.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Melis Platform

Published

2025-10-08

Last Modified

2026-02-24

References

https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-melis-platform

Patch

https://www.melisplatform.com/en

Share on: