CVE-2025-10086: fuyang_lipengjun platform AdPositionController queryAll improper authorization
A weakness has been identified in fuyanglipengjun platform 1.0.0. This issue affects the function queryAll of the file /adposition/queryAll of the component AdPositionController. This manipulation causes improper authorization. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited. Affects another part than CVE-2025-9936.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10086?
The severity of CVE-2025-10086 is currently classified as high due to the potential for unauthorized access.
How do I fix CVE-2025-10086?
To fix CVE-2025-10086, you should update to the latest version of the fuyang_lipengjun platform where the vulnerability is patched.
What is affected by CVE-2025-10086?
CVE-2025-10086 affects the queryAll function in the AdPositionController of the fuyang_lipengjun platform version 1.0.0.
Can CVE-2025-10086 be exploited remotely?
Yes, CVE-2025-10086 can be exploited remotely, allowing attackers to manipulate authorization improperly.
What type of vulnerability is CVE-2025-10086?
CVE-2025-10086 is classified as an improper authorization vulnerability.