Metrics
Affected Vendors & Products
Wed, 07 Jan 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:phpems:phpems:*:*:*:*:*:*:*:* |
Mon, 05 Jan 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Phpems
Phpems phpems |
|
| Vendors & Products |
Phpems
Phpems phpems |
Tue, 30 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 30 Dec 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in PHPEMS up to 11.0. The impacted element is an unknown function of the component Coupon Handler. Performing manipulation results in race condition. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitability is regarded as difficult. The exploit is now public and may be used. | |
| Title | PHPEMS Coupon race condition | |
| Weaknesses | CWE-362 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-12-30T09:32:07.221Z
Updated: 2025-12-30T16:00:48.345Z
Reserved: 2025-12-29T08:16:05.639Z
Link: CVE-2025-15242
Updated: 2025-12-30T16:00:39.392Z
Status : Analyzed
Published: 2025-12-30T10:15:51.610
Modified: 2026-01-07T21:40:35.350
Link: CVE-2025-15242
No data.