production_ssm是MegaGao个人开发者的一个SSM(Spring+SpringMVC+Mybatis)+jQuery EasyUI开发的ERP系统。 production_ssm v0.0.1版本存在安全漏洞,该漏洞源于组件/user/list访问控制不当,可能导致访问敏感信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-4291 | 6.3 MEDIUM | IdeaCMS saveUpload unrestricted upload |
| CVE-2025-4259 | 6.3 MEDIUM | newbee-mall UploadController.java upload unrestricted upload |
| CVE-2025-4257 | 3.5 LOW | SeaCMS admin_pay.php cross site scripting |
| CVE-2025-4256 | 3.5 LOW | SeaCMS admin_paylog.php cross site scripting |
| CVE-2025-4287 | 3.3 LOW | PyTorch nccl.py torch.cuda.nccl.reduce denial of service |
| CVE-2025-4293 | 2.4 LOW | MRCMS Group Edit Page edit.do cross site scripting |
| CVE-2025-4292 | 2.4 LOW | MRCMS Edit User Page edit.do cross site scripting |
| CVE-2025-45616 | Baidu BRCC 安全漏洞 | |
| CVE-2025-29573 | mezzanine 安全漏洞 | |
| CVE-2025-44074 | SeaCMS 安全漏洞 | |
| CVE-2025-44072 | SeaCMS 安全漏洞 | |
| CVE-2025-44071 | SeaCMS 安全漏洞 | |
| CVE-2025-45614 | One 安全漏洞 | |
| CVE-2025-45613 | Shiro-Action 安全漏洞 | |
| CVE-2025-45608 | xinguan 安全漏洞 | |
| CVE-2025-45607 | iTranswarp 安全漏洞 | |
| CVE-2025-45612 | XMall 安全漏洞 | |
| CVE-2025-45610 | PassJava-Platform 安全漏洞 | |
| CVE-2025-45609 | kob 安全漏洞 | |
| CVE-2025-45237 | DBSyncer 安全漏洞 |
Showing top 20 of 46 CVEs. View all on vendor page → →
No comments yet