CNNVD-202512-4152 Information

CNNVD ID

CNNVD-202512-4152

CVE-2025-66845

  • CNNVD Published: 2025-12-23

Description (Chinese)

TechStore是阿拉伯联合酋长国TechStore公司的一个订购软件平台。 TechStore 1.0版本存在安全漏洞,该漏洞源于id参数未经编码或清理,可能导致反射型跨站脚本攻击。

Description (English)

TechStore is a software subscription platform for TechStore in the United Arab Emirates. There is a security loophole in TechStore Version 1.0, which stems from the fact that the id parameters have not been coded or cleared and may result in a reflective cross-site script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

TechStore

Published

2025-12-23

Last Modified

2026-02-24

References

https://gist.github.com/MuratSevri/d78efed86ca5f82e8a6683ace5061319 https://access.redhat.com/security/cve/cve-2025-66845

Share on: