CVE 5.1 MEDIUM

yangshare warehouseManager 仓库管理系统 CustomerManageHandler.java addCustomer cross site scripting_CVE-2025-14538

5.1 / 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P

Description

A security vulnerability has been detected in yangshare warehouseManager 仓库管理系统 1.1.0. This affects the function addCustomer of the file CustomerManageHandler.java. Such manipulation of the argument Name leads to cross site scripting. The attack can be executed remotely. The exploit has been disclosed publicly and may be used.

Basic Information

ID CVE-2025-14538
Source VulDB
Published Dec 11, 2025 at 21:02

Affected Product

Vendor yangshare
Product warehouseManager 仓库管理系统
Version 1.1.0
Affected Versions yangshare warehouseManager 仓库管理系统 1.1.0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.