Metrics
Affected Vendors & Products
Thu, 09 Oct 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:jhumanj:opnform:*:*:*:*:*:*:*:* |
Thu, 09 Oct 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jhumanj
Jhumanj opnform |
|
| Vendors & Products |
Jhumanj
Jhumanj opnform |
Wed, 08 Oct 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 08 Oct 2025 05:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in JhumanJ OpnForm up to 1.9.3. Affected by this issue is some unknown functionality of the file /answer. The manipulation results in unrestricted upload. The attack can be launched remotely. The exploit is now public and may be used. The patch is identified as 95c3e23856465d202e6aec10bdb6ee0688b5305a. It is advisable to implement a patch to correct this issue. | |
| Title | JhumanJ OpnForm answer unrestricted upload | |
| Weaknesses | CWE-284 CWE-434 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-10-08T05:32:12.472Z
Updated: 2025-10-08T17:40:25.931Z
Reserved: 2025-10-07T13:17:12.844Z
Link: CVE-2025-11436
Updated: 2025-10-08T17:40:17.404Z
Status : Analyzed
Published: 2025-10-08T06:15:34.883
Modified: 2025-10-09T16:19:29.323
Link: CVE-2025-11436
No data.