CNNVD-202512-332 Information

CNNVD ID

CNNVD-202512-332

CVE-2025-65868

  • CNNVD Published: 2025-12-03

Description (Chinese)

EyouCMS是中国易优(Eyou)公司的一套基于ThinkPHP的开源内容管理系统(CMS)。 EyouCMS v1.7.1版本存在安全漏洞,该漏洞源于XML外部实体注入,可能导致拒绝服务攻击。

Description (English)

EyouCMS is an open-source content management system (CMS) based on ThinkPHP for Eyou. The EyouCMS v1.7.1 version contains a security loophole that originates from the injection of an outside XML entity and may lead to a denial of service attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

易优

Published

2025-12-03

Last Modified

2026-02-24

References

https://github.com/weng-xianhu/eyoucms/issues/66 https://access.redhat.com/security/cve/cve-2025-65868

Patch

https://www.eyoucms.com/rizhi/

Share on: