Incorrect access control in the component orderService.queryObject of platform v1.0.0 allows attackers to access sensitive information via a crafted request.
References
| Link | Resource |
|---|---|
| https://gist.github.com/xueye0629/620e4e0cc0f23c903736971e6375f00e | Third Party Advisory |
| https://gitee.com/fuyang_lipengjun/platform | Product |
Configurations
History
05 Dec 2025, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-284 |
05 Dec 2025, 21:46
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
| CWE | NVD-CWE-noinfo | |
| First Time |
Fuyang Lipengjun
Fuyang Lipengjun platform |
|
| References | () https://gist.github.com/xueye0629/620e4e0cc0f23c903736971e6375f00e - Third Party Advisory | |
| References | () https://gitee.com/fuyang_lipengjun/platform - Product | |
| CPE | cpe:2.3:a:fuyang_lipengjun:platform:1.0.0:*:*:*:*:*:*:* |
04 Dec 2025, 16:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-04 16:16
Updated : 2025-12-05 22:15
NVD link : CVE-2025-57213
Mitre link : CVE-2025-57213
CVE.ORG link : CVE-2025-57213
JSON object : View
Products Affected
fuyang_lipengjun
- platform
CWE
