Metrics
Affected Vendors & Products
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 02 Oct 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Guojusoft
Guojusoft jeecgboot |
|
CPEs | cpe:2.3:a:guojusoft:jeecgboot:*:*:*:*:*:*:*:* | |
Vendors & Products |
Guojusoft
Guojusoft jeecgboot |
Mon, 12 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 11 May 2025 06:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as problematic was found in JeecgBoot up to 3.8.0. This vulnerability affects the function unzipFile of the file /jeecg-boot/airag/knowledge/doc/import/zip of the component Document Library Upload. The manipulation of the argument File leads to resource consumption. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | |
Title | JeecgBoot Document Library Upload zip unzipFile resource consumption | |
Weaknesses | CWE-400 CWE-404 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-05-12T13:39:06.588Z
Reserved: 2025-05-10T05:49:33.651Z
Link: CVE-2025-4533

Updated: 2025-05-12T13:38:53.339Z

Status : Analyzed
Published: 2025-05-11T07:15:15.430
Modified: 2025-10-02T16:44:55.587
Link: CVE-2025-4533

No data.

No data.