First published: Mon Apr 28 2025(Updated: )
A vulnerability was found in 201206030 Novel 3.5.0 and classified as critical. This issue affects the function updateBookChapter of the file src/main/java/io/github/xxyopen/novel/controller/author/AuthorController.java of the component Chapter Handler. The manipulation leads to improper access controls. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
201206030 Novel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-4036 is classified as a critical vulnerability.
CVE-2025-4036 affects the Chapter Handler found in the AuthorController.java file.
The vulnerability in CVE-2025-4036 is associated with the updateBookChapter function.
You may be affected by CVE-2025-4036 if you are using the 201206030 Novel version 3.5.0.
Exploiting CVE-2025-4036 can lead to improper manipulation within the chapter handling functionality.