Metrics
Affected Vendors & Products
Thu, 02 Oct 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Guojusoft
Guojusoft jeecgboot |
|
CPEs | cpe:2.3:a:guojusoft:jeecgboot:*:*:*:*:*:*:*:* | |
Vendors & Products |
Guojusoft
Guojusoft jeecgboot |
Mon, 12 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 11 May 2025 06:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as problematic was found in JeecgBoot up to 3.8.0. This vulnerability affects the function unzipFile of the file /jeecg-boot/airag/knowledge/doc/import/zip of the component Document Library Upload. The manipulation of the argument File leads to resource consumption. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | |
Title | JeecgBoot Document Library Upload zip unzipFile resource consumption | |
Weaknesses | CWE-400 CWE-404 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-11T06:31:04.456Z
Updated: 2025-05-12T13:39:06.588Z
Reserved: 2025-05-10T05:49:33.651Z
Link: CVE-2025-4533

Updated: 2025-05-12T13:38:53.339Z

Status : Analyzed
Published: 2025-05-11T07:15:15.430
Modified: 2025-10-02T16:44:55.587
Link: CVE-2025-4533

No data.