Metrics
Affected Vendors & Products
Tue, 12 Aug 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 12 Aug 2025 12:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Tianti Project
Tianti Project tianti |
|
Vendors & Products |
Tianti Project
Tianti Project tianti |
Sun, 10 Aug 2025 11:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in xujeff tianti 天梯 up to 2.3. It has been declared as critical. This vulnerability affects unknown code of the file /tianti-module-admin/user/ajax/save. The manipulation leads to missing authorization. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | xujeff tianti 天梯 save authorization | |
Weaknesses | CWE-862 CWE-863 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-08-10T11:32:05.977Z
Updated: 2025-08-12T16:02:51.855Z
Reserved: 2025-08-09T07:51:04.088Z
Link: CVE-2025-8807

Updated: 2025-08-11T15:15:48.559Z

Status : Awaiting Analysis
Published: 2025-08-10T12:15:30.290
Modified: 2025-08-12T16:15:33.683
Link: CVE-2025-8807

No data.