First published: Mon Apr 14 2025(Updated: )
A vulnerability, which was classified as problematic, was found in veal98 小牛肉 Echo 开源社区系统 4.2. Affected is the function preHandle of the file src/main/java/com/greate/community/controller/interceptor/LoginTicketInterceptor.java of the component Ticket Handler. The manipulation leads to improper authorization. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
veal98 Echo 开源社区系统 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-3567 is classified as a problematic vulnerability in the veal98 Echo 开源社区系统.
CVE-2025-3567 affects the preHandle function in the LoginTicketInterceptor.java file of the Ticket Handler component.
To fix CVE-2025-3567, ensure to update to the patched version of veal98 Echo 开源社区系统.
CVE-2025-3567 allows manipulation that can compromise the functionality of the login ticket handling process.
The vendor for the affected software related to CVE-2025-3567 is veal98.