Metrics
Affected Vendors & Products
Tue, 09 Dec 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Verysync
Verysync verysync |
|
| Vendors & Products |
Verysync
Verysync verysync |
Mon, 08 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 07 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in Verysync 微力同步 up to 2.21.3. The impacted element is an unknown function of the file /rest/f/api/resources/f96956469e7be39d of the component Web Administration Module. Such manipulation leads to information disclosure. The attack can be executed remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Verysync 微力同步 Web Administration f96956469e7be39d information disclosure | |
| Weaknesses | CWE-200 CWE-284 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-12-07T16:02:05.996Z
Updated: 2025-12-08T15:54:26.227Z
Reserved: 2025-12-06T17:34:10.995Z
Link: CVE-2025-14197
Updated: 2025-12-08T15:54:23.158Z
Status : Awaiting Analysis
Published: 2025-12-07T16:15:47.297
Modified: 2025-12-08T18:26:49.133
Link: CVE-2025-14197
No data.