CNNVD-202512-784 Information

CNNVD ID

CNNVD-202512-784

CVE-2025-14117

  • CNNVD Published: 2025-12-06

Description (Chinese)

FIT2CLOUD Halo是中国飞致云(FIT2CLOUD)公司的一个建站工具。 FIT2CLOUD Halo 2.21.10版本存在安全漏洞,该漏洞源于跨站请求伪造问题,可能导致远程攻击。

Description (English)

FIT2CLUD Halo is a construction tool for the Chinese company FIT2CLUD. The FIT2CLUD Halo version 2.21.10 contains a security loophole, which stems from cross-site requests for forgery and may lead to long-range attacks.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

飞致云

Published

2025-12-06

Last Modified

2026-02-24

References

https://vuldb.com/?submit.697391 https://blksword.flowus.cn/ https://vuldb.com/?id.334494 https://vuldb.com/?ctiid.334494 https://github.com/BlkSword/POC https://access.redhat.com/security/cve/cve-2025-14117

Share on: