CVE-2025-0226

A vulnerability, which was classified as problematic, has been found in Tsinghua Unigroup Electronic Archives System 3.2.210802(62532). Affected by this issue is the function download of the file /collect/PortV4/downLoad.html. The manipulation of the argument path leads to information disclosure. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Configurations

No configuration.

History

05 Jan 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-05 18:15

Updated : 2025-01-05 18:15


NVD link : CVE-2025-0226

Mitre link : CVE-2025-0226

CVE.ORG link : CVE-2025-0226


JSON object : View

Products Affected

No product.

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-284

Improper Access Control