CVE-2025-15427: Seeyon Zhiyuan OA Web Application System carUseDetailList.j%73p sql injection
Rejected reason: REJECT DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: The vendor mentioned in the original disclosure filed a report that this issue affects a different vendor. The researcher was not able to provide a proof for his disputed claim which is why the CNA decided to revoke the whole entry.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15427?
CVE-2025-15427 is classified as a critical vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2025-15427?
To fix CVE-2025-15427, update the Seeyon Zhiyuan OA Web Application System to a version later than 20251222.
Who is affected by CVE-2025-15427?
CVE-2025-15427 affects all users of the Seeyon Zhiyuan OA Web Application System up to version 20251222.
What type of vulnerability is CVE-2025-15427?
CVE-2025-15427 is an SQL injection vulnerability that allows unauthorized manipulation of database queries.
What could be the impact of exploiting CVE-2025-15427?
Exploiting CVE-2025-15427 could lead to unauthorized data access, data manipulation, or potential data breach.