CVE 5.1 MEDIUM

MikeCen WeChat-Face-Recognition wx.php valid cross site scripting_CVE-2025-10943

5.1 / 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X

Description

A security flaw has been discovered in MikeCen WeChat-Face-Recognition up to 6e3f72bf8547d80b59e330f1137e4aa505f492c1. This vulnerability affects the function valid of the file wx.php. The manipulation of the argument echostr results in cross site scripting. The attack can be launched remotely. This product does not use versioning. This is why information about affected and unaffected releases are unavailable. The vendor was contacted early about this disclosure but did not respond in any way.

Basic Information

ID CVE-2025-10943
Source VulDB
Published Sep 25, 2025 at 12:02

Affected Product

Vendor MikeCen
Product WeChat-Face-Recognition
Version 6e3f72bf8547d80b59e330f1137e4aa505f492c1
Affected Versions MikeCen WeChat-Face-Recognition 6e3f72bf8547d80b59e330f1137e4aa505f492c1

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.