CVE-2025-10822: fuyang_lipengjun platform queryAll SysSmsLogController improper authorization
A vulnerability has been found in fuyanglipengjun platform 1.0. The impacted element is the function SysSmsLogController of the file /sys/smslog/queryAll. Such manipulation leads to improper authorization. The attack may be performed from remote. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10822?
CVE-2025-10822 is classified as a high-severity vulnerability due to its potential for unauthorized access.
How do I fix CVE-2025-10822?
To fix CVE-2025-10822, you should implement proper authentication and authorization mechanisms in the SysSmsLogController function.
Who is affected by CVE-2025-10822?
The CVE-2025-10822 vulnerability affects users of the fuyang_lipengjun platform version 1.0.
What type of vulnerability is CVE-2025-10822?
CVE-2025-10822 is an improper authorization vulnerability allowing remote attackers to exploit the system.
Can CVE-2025-10822 be exploited remotely?
Yes, CVE-2025-10822 can be exploited remotely, allowing attackers to use it from outside the victim's network.