Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-14965

Опубликовано: 19 дек. 2025
Источник: nvd
CVSS3: 5.5
CVSS2: 5.2
EPSS Низкий

Описание

A vulnerability was found in 1541492390c yougou-mall up to 0a771fa817c924efe52c8fe0a9a6658eee675f9f. This impacts the function upload/delete of the file src/main/java/per/ccm/ygmall/extra/controller/ResourceController.java. Performing manipulation results in path traversal. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.

EPSS

Процентиль: 13%
0.00043
Низкий

5.5 Medium

CVSS3

5.2 Medium

CVSS2

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 5.5
github
около 2 месяцев назад

A vulnerability was found in 1541492390c yougou-mall up to 0a771fa817c924efe52c8fe0a9a6658eee675f9f. This impacts the function Upload of the file src/main/java/per/ccm/ygmall/extra/controller/ResourceController.java. Performing manipulation results in path traversal. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.

EPSS

Процентиль: 13%
0.00043
Низкий

5.5 Medium

CVSS3

5.2 Medium

CVSS2

Дефекты

CWE-22