CVE-2025-15118: macrozheng mall Member Endpoint update improper authorization
A security vulnerability has been detected in macrozheng mall up to 1.0.3. This vulnerability affects unknown code of the file /member/address/update/ of the component Member Endpoint. The manipulation leads to improper authorization. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15118?
CVE-2025-15118 has been categorized as a significant security vulnerability due to its potential for improper authorization.
How do I fix CVE-2025-15118?
To mitigate CVE-2025-15118, update the software to a version beyond 1.0.3 that addresses the vulnerability.
What components are affected by CVE-2025-15118?
CVE-2025-15118 specifically affects the Member Endpoint in the macrozheng mall software.
Can CVE-2025-15118 be exploited remotely?
Yes, CVE-2025-15118 allows for remote exploitation due to improper authorization.
What consequences does CVE-2025-15118 pose?
The improper authorization in CVE-2025-15118 could lead to unauthorized access to sensitive user information.