Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-30447 | A security flaw has been discovered in Jinher OA 2.0. This affects an unknown part of the file /c6/Jhsoft.Web.module/ToolBar/GetWordFileName.aspx/?text=GetUrl&style=add of the component XML Handler. Performing manipulation results in xml external entity reference. The attack may be initiated remotely. The exploit has been released to the public and may be exploited. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 03 Oct 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:jinher:jinher_oa:2.0:*:*:*:*:*:*:* |
Tue, 23 Sep 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jinher
Jinher jinher Oa |
|
| Vendors & Products |
Jinher
Jinher jinher Oa |
|
| Metrics |
ssvc
|
Mon, 22 Sep 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security flaw has been discovered in Jinher OA 2.0. This affects an unknown part of the file /c6/Jhsoft.Web.module/ToolBar/GetWordFileName.aspx/?text=GetUrl&style=add of the component XML Handler. Performing manipulation results in xml external entity reference. The attack may be initiated remotely. The exploit has been released to the public and may be exploited. | |
| Title | Jinher OA XML text xml external entity reference | |
| Weaknesses | CWE-610 CWE-611 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-09-23T16:02:01.993Z
Reserved: 2025-09-21T10:49:51.521Z
Link: CVE-2025-10816
Updated: 2025-09-23T16:01:51.779Z
Status : Analyzed
Published: 2025-09-22T22:15:41.780
Modified: 2025-10-03T17:42:14.280
Link: CVE-2025-10816
No data.
OpenCVE Enrichment
Updated: 2025-09-23T16:03:30Z
EUVD