CNNVD-202510-2627 Information

CNNVD ID

CNNVD-202510-2627

CVE-2025-56224

  • CNNVD Published: 2025-10-20

Description (Chinese)

SigningHub是英国SigningHub公司的一个电子签名平台。 SigningHub v8.6.8版本存在安全漏洞,该漏洞源于一次性密码验证端点缺少速率限制,可能导致暴力破解攻击绕过验证。

Description (English)

Signing Hub is an electronic signature platform for Signing Hub, a British company. The security loophole in version SigningHub v8.6.8 arises from the lack of speed limits at the one-time password-certification end point, which could lead to violent detachment attacks bypassing the validation.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

SigningHub

Published

2025-10-20

Last Modified

2026-02-24

References

http://ascertia.com http://signinghub.com https://github.com/saykino/CVE-2025-56224 https://access.redhat.com/security/cve/cve-2025-56224

Patch

https://www.signinghub.com/

Share on: