Metrics
Affected Vendors & Products
Wed, 07 Jan 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:phpems:phpems:*:*:*:*:*:*:*:* |
Mon, 05 Jan 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Phpems
Phpems phpems |
|
| Vendors & Products |
Phpems
Phpems phpems |
Tue, 30 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 30 Dec 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in PHPEMS up to 11.0. This impacts an unknown function of the component Purchase Request Handler. The manipulation leads to race condition. The attack may be initiated remotely. A high degree of complexity is needed for the attack. The exploitability is said to be difficult. The exploit has been disclosed to the public and may be used. | |
| Title | PHPEMS Purchase Request race condition | |
| Weaknesses | CWE-362 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-12-30T10:32:05.640Z
Updated: 2025-12-30T16:02:21.268Z
Reserved: 2025-12-29T08:20:03.791Z
Link: CVE-2025-15244
Updated: 2025-12-30T16:02:15.888Z
Status : Analyzed
Published: 2025-12-30T11:15:54.730
Modified: 2026-01-07T21:41:37.437
Link: CVE-2025-15244
No data.