A vulnerability, which was classified as problematic, was found in yangshare 技术杨工 warehouseManager 仓库管理系统 1.0. This affects an unknown part. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
History

Wed, 04 Jun 2025 16:00:00 +0000

Type Values Removed Values Added
First Time appeared Yangshare
Yangshare warehouse Management System
Weaknesses NVD-CWE-Other
CPEs cpe:2.3:a:yangshare:warehouse_management_system:1.0:*:*:*:*:*:*:*
Vendors & Products Yangshare
Yangshare warehouse Management System

Thu, 29 May 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 26 May 2025 01:45:00 +0000

Type Values Removed Values Added
Description A vulnerability, which was classified as problematic, was found in yangshare 技术杨工 warehouseManager 仓库管理系统 1.0. This affects an unknown part. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Title yangshare 技术杨工 warehouseManager 仓库管理系统 access control
Weaknesses CWE-266
CWE-284
References
Metrics cvssV2_0

{'score': 5, 'vector': 'AV:N/AC:L/Au:N/C:P/I:N/A:N'}

cvssV3_0

{'score': 5.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}

cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2025-05-26T01:31:04.731Z

Updated: 2025-05-28T17:37:22.771Z

Reserved: 2025-05-25T06:56:12.569Z

Link: CVE-2025-5163

cve-icon Vulnrichment

Updated: 2025-05-27T14:20:18.457Z

cve-icon NVD

Status : Analyzed

Published: 2025-05-26T02:15:18.723

Modified: 2025-06-03T15:39:35.613

Link: CVE-2025-5163

cve-icon Redhat

No data.