Metrics
Affected Vendors & Products
Mon, 09 Jun 2025 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Quequnlong
Quequnlong shiyi-blog |
|
CPEs | cpe:2.3:a:quequnlong:shiyi-blog:*:*:*:*:*:*:*:* | |
Vendors & Products |
Quequnlong
Quequnlong shiyi-blog |
Tue, 03 Jun 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 03 Jun 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as critical was found in quequnlong shiyi-blog up to 1.2.1. This vulnerability affects unknown code of the file /app/sys/article/optimize. The manipulation of the argument url leads to server-side request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | quequnlong shiyi-blog optimize server-side request forgery | |
Weaknesses | CWE-918 | |
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-06-03T16:31:04.789Z
Updated: 2025-06-03T17:35:16.577Z
Reserved: 2025-06-03T05:58:05.428Z
Link: CVE-2025-5510

Updated: 2025-06-03T17:35:08.905Z

Status : Analyzed
Published: 2025-06-03T17:15:22.057
Modified: 2025-06-09T15:13:41.167
Link: CVE-2025-5510

No data.