fuyang_lipengjun platform ScheduleJobController.java queryPage sql injection
Published Jul 21, 2025
5.3
MEDIUMCVSS 4.0
EPSS 0.44%
Description
A vulnerability, which was classified as critical, has been found in fuyang_lipengjun platform up to ca9aceff6902feb7b0b6bf510842aea88430796a. This issue affects the function queryPage of the file platform-schedule/src/main/java/com/platform/controller/ScheduleJobController.java. The manipulation of the argument beanName leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. This product does not use versioning. This is why information about affected and unaffected releases are unavailable.
Affected products
-
Affected
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| Fuyang Lipengjun | Platform | unknown | Affected |
- ≤ 2025-06-29
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (5)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-22150 Advisory
- https://gitee.com/fuyang_lipengjun/platform/issues/ICLILS exploitissue-trackingIssue TrackingVendor Advisory
- https://vuldb.com/?ctiid.317063 signaturepermissions-requiredPermissions RequiredVDB Entry
- https://vuldb.com/?id.317063 vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry
- https://vuldb.com/?submit.618977 third-party-advisoryThird Party AdvisoryVDB Entry
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-22150 | Advisory | |
| https://gitee.com/fuyang_lipengjun/platform/issues/ICLILS | exploitissue-trackingIssue TrackingVendor Advisory | |
| https://vuldb.com/?ctiid.317063 | signaturepermissions-requiredPermissions RequiredVDB Entry | |
| https://vuldb.com/?id.317063 | vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry | |
| https://vuldb.com/?submit.618977 | third-party-advisoryThird Party AdvisoryVDB Entry |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
Red Hat
No data
GitHub
No data