CNNVD-202510-854 Information

CNNVD ID

CNNVD-202510-854

CVE-2025-11322

  • CNNVD Published: 2025-10-06

Description (Chinese)

Mangati NovoSGA是巴西Mangati公司的一个服务管理系统。 Mangati NovoSGA 2.2.12及之前版本存在安全漏洞,该漏洞源于对用户创建页面中参数Senha/Confirmação da senha的错误操作,可能导致弱密码要求。

Description (English)

Mangati NovosGA is a service management system for Mangati, Brazil. There is a security loophole in Mangati NovoSGA 2.2.12 and earlier versions, which stems from an error in the user’s creation of the parameter Senha/Confirmação da senha, which may lead to weak password requirements.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

Mangati

Published

2025-10-06

Last Modified

2026-02-24

References

https://github.com/marcelomulder/CVE/blob/main/NovoSga/CVE-2025-11322.md https://github.com/marcelomulder/CVE/blob/main/NovoSga/Weak%20Password%20Policy%20in%20Novosga.md https://vuldb.com/?ctiid.327203 https://vuldb.com/?id.327203 https://vuldb.com/?submit.664517

Patch

https://github.com/novosga/novosga/releases

Share on: