CNNVD-202512-332 Information
Dec 03, 2025
cve
CNNVD ID
CNNVD-202512-332
Related CVE
- CNNVD Published: 2025-12-03
Description (Chinese)
EyouCMS是中国易优(Eyou)公司的一套基于ThinkPHP的开源内容管理系统(CMS)。 EyouCMS v1.7.1版本存在安全漏洞,该漏洞源于XML外部实体注入,可能导致拒绝服务攻击。
Description (English)
EyouCMS is an open-source content management system (CMS) based on ThinkPHP for Eyou. The EyouCMS v1.7.1 version contains a security loophole that originates from the injection of an outside XML entity and may lead to a denial of service attack.
Hazard Level
High
Vulnerability Type
其他
Affected Vendor
易优
Published
2025-12-03
Last Modified
2026-02-24
References
https://github.com/weng-xianhu/eyoucms/issues/66 https://access.redhat.com/security/cve/cve-2025-65868
Patch
https://www.eyoucms.com/rizhi/
Share on: