Metrics
Affected Vendors & Products
| Source | ID | Title | 
|---|---|---|
  EUVD | 
                EUVD-2025-32487 | A security flaw has been discovered in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This vulnerability affects unknown code of the file uploadWxFile.do. The manipulation of the argument File results in unrestricted upload. The attack may be performed from remote. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way. | 
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 03 Nov 2025 16:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:2.3:a:tipray:data_leakage_prevention_system:1.0:*:*:*:*:*:*:* | 
Mon, 06 Oct 2025 20:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Mon, 06 Oct 2025 14:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Tipray
         Tipray data Leakage Prevention System  | 
|
| Vendors & Products | 
        
        Tipray
         Tipray data Leakage Prevention System  | 
Mon, 06 Oct 2025 03:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A security flaw has been discovered in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This vulnerability affects unknown code of the file uploadWxFile.do. The manipulation of the argument File results in unrestricted upload. The attack may be performed from remote. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 uploadWxFile.do unrestricted upload | |
| Weaknesses | CWE-284 CWE-434  | 
|
| References | 
         | |
| Metrics | 
        
        cvssV2_0
         
 
 
 
  | 
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-10-06T19:38:16.047Z
Reserved: 2025-10-05T06:07:01.420Z
Link: CVE-2025-11318
Updated: 2025-10-06T19:36:51.783Z
Status : Analyzed
Published: 2025-10-06T04:15:34.467
Modified: 2025-11-03T16:14:24.143
Link: CVE-2025-11318
No data.
                        OpenCVE Enrichment
                    Updated: 2025-10-06T14:40:03Z
 EUVD