CVE-2025-2832

A vulnerability was found in mingyuefusu 明月复苏 tushuguanlixitong 图书管理系统 up to d4836f6b49cd0ac79a4021b15ce99ff7229d4694 and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
References
Link Resource
https://gitee.com/mingyuefusu/tushuguanlixitong/issues/IBTSPH Exploit Issue Tracking
https://vuldb.com/?ctiid.301469 Permissions Required VDB Entry
https://vuldb.com/?id.301469 Third Party Advisory VDB Entry
https://vuldb.com/?submit.521460 Third Party Advisory VDB Entry
https://gitee.com/mingyuefusu/tushuguanlixitong/issues/IBTSPH Exploit Issue Tracking
Configurations

Configuration 1 (hide)

cpe:2.3:a:mingyuefusu:library_management_system:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-03-27 04:15

Updated : 2025-04-11 16:25


NVD link : CVE-2025-2832

Mitre link : CVE-2025-2832

CVE.ORG link : CVE-2025-2832


JSON object : View

Products Affected

mingyuefusu

  • library_management_system
CWE
CWE-352

Cross-Site Request Forgery (CSRF)

CWE-862

Missing Authorization