A vulnerability, which was classified as critical, was found in JeeWMS up to 20250504. This affects the function filedeal of the file /systemController/filedeal.do of the component File Handler. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. This product does not use versioning. This is why information about affected and unaffected releases are unavailable.
References
Link | Resource |
---|---|
https://gitee.com/erzhongxmu/JEEWMS/issues/IC5FNV | Issue Tracking |
https://vuldb.com/?ctiid.310683 | Permissions Required VDB Entry |
https://vuldb.com/?id.310683 | Third Party Advisory VDB Entry |
Configurations
History
11 Sep 2025, 20:43
Type | Values Removed | Values Added |
---|---|---|
First Time |
Huayi-tec
Huayi-tec jeewms |
|
CWE | NVD-CWE-noinfo | |
CPE | cpe:2.3:a:huayi-tec:jeewms:*:*:*:*:*:*:*:* | |
References | () https://gitee.com/erzhongxmu/JEEWMS/issues/IC5FNV - Issue Tracking | |
References | () https://vuldb.com/?ctiid.310683 - Permissions Required, VDB Entry | |
References | () https://vuldb.com/?id.310683 - Third Party Advisory, VDB Entry |
02 Jun 2025, 17:32
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-31 19:15
Updated : 2025-09-11 20:43
NVD link : CVE-2025-5390
Mitre link : CVE-2025-5390
CVE.ORG link : CVE-2025-5390
JSON object : View
Products Affected
huayi-tec
- jeewms
CWE