Sparx Systems Pro Cloud Server是澳大利亚Sparx Systems公司的一个企业级模型协作平台,支持EA(Enterprise Architect)模型的云端共享与版本控制。 Sparx Systems Pro Cloud Server 6.0.165之前版本存在安全漏洞,该漏洞源于WebEA模型搜索字段输入验证不当,可能导致跨站脚本攻击。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Sparx Systems | Pro Cloud Server | ≤ 6.0.164 |
affected |
6.0.165 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Sparx Systems | Pro Cloud Server | 0 ~ 6.0.164 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-4375 | Cross-Site Request Forgery vulnerability in Pro Cloud Server's WebEA | |
| CVE-2025-4377 | Path traversal vulnerability in Sparx Pro Cloud Server WebEA webconfig in logview.php |
No comments yet