CNNVD-202601-3282 Information

CNNVD ID

CNNVD-202601-3282

CVE-2025-41024

  • CNNVD Published: 2026-01-20

Description (Chinese)

Poultry Farm Management System是Poultry公司的一款功能齐全的家禽管理系统。 Poultry Farm Management System v1.0版本存在跨站脚本漏洞,该漏洞源于对发送到/farm/farmprofile.php的POST请求中companyaddress、companyemail、companyname、country、mobilenumber和regno参数的用户输入缺乏验证,可能导致存储型跨站脚本。

Description (English)

Poultry Farm Management System is a fully functional poultry management system for Poultry. Version Poultry Farm Management System v1.0 has a cross-site script loophole, which stems from the lack of authentication of user input of the storage-type cross-site script in POST requests sent to/farm/farmprofile.php.

Hazard Level

High

Vulnerability Type

跨站脚本

Affected Vendor

Poultry

Published

2026-01-20

Last Modified

2026-02-24

References

https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-poultry-farm-management-system

Share on: