Metrics
Affected Vendors & Products
Wed, 04 Jun 2025 20:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Itwanger
Itwanger paicoding |
|
CPEs | cpe:2.3:a:itwanger:paicoding:1.0.0:*:*:*:*:*:*:* cpe:2.3:a:itwanger:paicoding:1.0.1:*:*:*:*:*:*:* cpe:2.3:a:itwanger:paicoding:1.0.2:*:*:*:*:*:*:* cpe:2.3:a:itwanger:paicoding:1.0.3:*:*:*:*:*:*:* |
|
Vendors & Products |
Itwanger
Itwanger paicoding |
Mon, 19 May 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sat, 17 May 2025 22:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in itwanger paicoding 1.0.0/1.0.1/1.0.2/1.0.3 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /paicoding-core/src/main/java/com/github/paicoding/forum/core/util/CrossUtil.java. The manipulation leads to permissive cross-domain policy with untrusted domains. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. | |
Title | itwanger paicoding CrossUtil.java cross-domain policy | |
Weaknesses | CWE-346 CWE-942 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-17T22:00:06.221Z
Updated: 2025-05-19T14:34:41.960Z
Reserved: 2025-05-16T14:40:54.970Z
Link: CVE-2025-4839

Updated: 2025-05-19T14:34:31.095Z

Status : Analyzed
Published: 2025-05-17T22:15:19.390
Modified: 2025-06-04T20:11:58.047
Link: CVE-2025-4839

No data.