Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 08 Oct 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Kaifangqian
Kaifangqian kaifangqian |
|
Vendors & Products |
Kaifangqian
Kaifangqian kaifangqian |
Tue, 07 Oct 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 07 Oct 2025 19:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A security flaw has been discovered in kaifangqian kaifangqian-base up to 7b3faecda13848b3ced6c17c7423b76c5b47b8ab. This issue affects the function getAllUsers of the file kaifangqian-parent/kaifangqian-system/src/main/java/com/kaifangqian/modules/system/controller/SysUserController.java. The manipulation results in information disclosure. The attack can be launched remotely. The exploit has been released to the public and may be exploited. This product does not use versioning. This is why information about affected and unaffected releases are unavailable. | |
Title | kaifangqian kaifangqian-base SysUserController.java getAllUsers information disclosure | |
Weaknesses | CWE-200 CWE-284 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-10-07T19:57:23.641Z
Reserved: 2025-10-07T07:12:05.001Z
Link: CVE-2025-11406

Updated: 2025-10-07T19:55:53.963Z

Status : Awaiting Analysis
Published: 2025-10-07T20:15:33.190
Modified: 2025-10-08T19:38:09.863
Link: CVE-2025-11406

No data.

Updated: 2025-10-08T13:35:33Z