Aller au contenu

Fiche vulnérabilité

CVE-2025-5390 : faille critique huayi-tec jeewms (CVSS 9.8)

Description

A vulnerability, which was classified as critical, was found in JeeWMS up to 20250504. This affects the function filedeal of the file /systemController/filedeal.do of the component File Handler. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. This product does not use versioning. This is why information about affected and unaffected releases are unavailable.

En bref

Sévérité
Critique (CVSS 9.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
31 mai 2025
Dernière mise à jour
17 juin 2026

Produits concernés

  • huayi-tec jeewms

Références

Rechercher une autre vulnérabilité dans la base CVE