First published: Sun Mar 09 2025(Updated: )
A vulnerability has been found in Beijing Founder Electronics Founder Enjoys All-Media Acquisition and Editing System 3.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /newsedit/newsedit/xy/imageProxy.do of the component File Protocol Handler. The manipulation of the argument xyImgUrl leads to server-side request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software | Affected Version | How to fix |
---|---|---|
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-2116 has been classified as problematic due to its impact on an unknown functionality of the affected system.
To remediate CVE-2025-2116, update the Beijing Founder Electronics Founder Enjoys All-Media Acquisition and Editing System to the latest version provided by the vendor.
CVE-2025-2116 affects the Beijing Founder Electronics Founder Enjoys All-Media Acquisition and Editing System 3.0.
CVE-2025-2116 involves a flaw in the file /newsedit/newsedit/xy/imageProxy.do of the component File Processing.
As of now, there is no public information regarding an exploit for CVE-2025-2116.