Beveiligingsadvies

CVE-2025-2491

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-03-18 14:31:03
Laatst bijgewerkt 2025-03-18 14:54:02
Toegewezen door VulDB
CVSS-score 4.8
Status PUBLISHED

Beschrijving

A vulnerability classified as problematic has been found in Dromara ujcms 9.7.5. This affects the function update of the file /main/java/com/ujcms/cms/ext/web/backendapi/WebFileTemplateController.java of the component Edit Template File Page. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.