CNNVD-202510-2354 Information

CNNVD ID

CNNVD-202510-2354

CVE-2025-61540

  • CNNVD Published: 2025-10-16

Description (Chinese)

Ultimate PHP Board是PHP Outburst开源的一个留言板软件。 Ultimate PHP Board 2.2.7版本存在安全漏洞,该漏洞源于lostpassword.php中的username字段未经验证,可能导致SQL注入攻击。

Description (English)

Ultimate PHP Board is a comment board for PHP Outburst open source. There is a security loophole in version 2.2.7 of Ultimate PHP Board, which originates from unverified username fields inlostpassword.php, which could lead to an attack by SQL.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

PHP Outburst

Published

2025-10-16

Last Modified

2026-02-24

References

https://github.com/PHP-Outburst/myUPB?tab=readme-ov-file https://github.com/bugdotexe/Vulnerability-Research/tree/main/CVE-2025-61540

Share on: