CNNVD-202510-2355 Information

CNNVD ID

CNNVD-202510-2355

CVE-2025-61539

  • CNNVD Published: 2025-10-16

Description (Chinese)

Ultimate PHP Board是PHP Outburst开源的一个留言板软件。 Ultimate PHP Board 2.2.7版本存在安全漏洞,该漏洞源于lostpassword.php文件中u_name参数处理不当,可能导致跨站脚本攻击。

Description (English)

Ultimate PHP Board is a comment board for PHP Outburst open source. Version 2.2.7 of Ultimate PHP Board contains a security loophole, which stems from the mishandling of the u name parameter in the lostpassword.php file, which may result in a cross-site script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

PHP Outburst

Published

2025-10-16

Last Modified

2026-02-24

References

https://github.com/PHP-Outburst/myUPB?tab=readme-ov-file https://github.com/bugdotexe/Vulnerability-Research/tree/main/CVE-2025-61539

Share on: