CNNVD-202510-3403 Information

CNNVD ID

CNNVD-202510-3403

CVE-2025-60801

  • CNNVD Published: 2025-10-24

Description (Chinese)

jshERP(华夏ERP)是中国季圣华个人开发者的一款国产 ERP 系统。 jshERP fbda24da及之前版本存在安全漏洞,该漏洞源于jsh_erp函数存在未经验证的远程代码执行漏洞。

Description (English)

Jsherp (Wahsha ERP) is a nationally produced ERP system for Chinese personal developers in Zhi Sanhua. There is a security gap in jsherp fbda24da and earlier versions, which stems from the unverified remote code implementation gap in the jsh erp function.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-10-24

Last Modified

2026-02-24

References

https://fushuling.com/index.php/2025/08/17/%e7%bb%95%e8%bf%87%e8%a1%a5%e4%b8%81%ef%bc%8c%e5%86%8d%e6%ac%a1%e5%ae%9e%e7%8e%b0%e5%8d%8e%e5%a4%8ferp%e6%9c%aa%e6%8e%88%e6%9d%83rce%e5%b7%b2%e4%bf%ae%e5%a4%8d/ https://github.com/jishenghua/jshERP/issues/132

Share on: