CNNVD-202512-163 Information

CNNVD ID

CNNVD-202512-163

CVE-2025-65877

  • CNNVD Published: 2025-12-02

Description (Chinese)

Lvzhou CMS(绿洲CMS)是wanliofficial个人开发者的一个内容管理系统。 Lvzhou CMS(绿洲CMS)存在安全漏洞,该漏洞源于ContentService中title参数未过滤直接拼接SQL查询,可能导致SQL注入攻击。

Description (English)

Lvzhou CMS (Oasis CMS) is a content management system for wanliofficial personal developers. The security gap in Lvzhou CMS (Oasis CMS) stems from the fact that the non-filtering of the title parameters in the Continental Service directly encoded SQL queries, which could lead to an SQL injection attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-12-02

Last Modified

2026-02-24

References

https://github.com/W000i/vuln/issues/1 https://access.redhat.com/security/cve/cve-2025-65877

Share on: