Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 17 Nov 2025 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in Dromara dataCompare up to 1.0.1. The affected element is the function DbConfig of the file src/main/java/com/vince/xq/project/system/dbconfig/service/DbconfigServiceImpl.java of the component JDBC URL Handler. Executing manipulation can lead to injection. The attack can be launched remotely. The exploit has been published and may be used. | |
| Title | Dromara dataCompare JDBC URL DbconfigServiceImpl.java DbConfig injection | |
| Weaknesses | CWE-707 CWE-74 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-11-17T07:02:08.083Z
Reserved: 2025-11-16T15:43:58.495Z
Link: CVE-2025-13268
No data.
Status : Received
Published: 2025-11-17T08:16:24.013
Modified: 2025-11-17T08:16:24.013
Link: CVE-2025-13268
No data.
OpenCVE Enrichment
No data.