CNNVD-202601-772 Information

CNNVD ID

CNNVD-202601-772

CVE-2025-15422

  • CNNVD Published: 2026-01-02

Description (Chinese)

EmpireSoft EmpireCMS(帝国内容管理系统)是EmpireSoft公司的一套开源内容管理系统(CMS)。 EmpireSoft EmpireCMS 8.0及之前版本存在安全漏洞,该漏洞源于对文件e/class/connect.php中函数egetip的错误操作,可能导致保护机制失效。

Description (English)

EmpireSoft EmpireCMS (the Imperial Content Management System) is an open-source content management system (CMS) for EmpireSoft. There is a security loophole in EmpireSoft EmpireCMS 8.0 and earlier versions, which stems from an error in the function egetip in document e/class/contract.php, which may result in the failure of the protective mechanism.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

帝国软件

Published

2026-01-02

Last Modified

2026-02-24

References

https://note-hxlab.wetolink.com/share/0x74KEtzecFb https://note-hxlab.wetolink.com/share/0x74KEtzecFb#-span–strong-proof-of-concept—strong—span- https://vuldb.com/?ctiid.339344 https://vuldb.com/?id.339344 https://vuldb.com/?submit.721344 https://access.redhat.com/security/cve/cve-2025-15422

Share on: