Metrics
Affected Vendors & Products
Fri, 05 Dec 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Dec 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Macrozheng
Macrozheng mall-swarm |
|
| Vendors & Products |
Macrozheng
Macrozheng mall-swarm |
Thu, 04 Dec 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in macrozheng mall-swarm up to 1.0.3. Affected is the function delete of the file /member/readHistory/delete. Such manipulation of the argument ids leads to improper authorization. The attack can be executed remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | macrozheng mall-swarm delete improper authorization | |
| Weaknesses | CWE-266 CWE-285 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-12-04T18:32:07.910Z
Updated: 2025-12-05T19:07:10.483Z
Reserved: 2025-12-04T11:39:51.790Z
Link: CVE-2025-14016
Updated: 2025-12-05T18:51:59.806Z
Status : Received
Published: 2025-12-04T19:16:03.530
Modified: 2025-12-05T20:15:54.753
Link: CVE-2025-14016
No data.