CVE-2025-25325

An issue in Yibin Fengguan Network Technology Co., Ltd YuPao DirectHire iOS 8.8.0 allows attackers to access sensitive user information via supplying a crafted link.
Configurations

No configuration.

History

28 Feb 2025, 16:15

Type Values Removed Values Added
Summary
  • (es) Un problema en Yibin Fengguan Network Technology Co., Ltd YuPao DirectHire iOS 8.8.0 permite a los atacantes acceder a información confidencial del usuario mediante el suministro de un enlace manipulado específicamente para ello.
References () https://github.com/ZhouZiyi1/Vuls/blob/main/250112-YuPaoDirectHire/250112-YuPaoDirectHire.pdf - () https://github.com/ZhouZiyi1/Vuls/blob/main/250112-YuPaoDirectHire/250112-YuPaoDirectHire.pdf -
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CWE CWE-84

27 Feb 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-27 16:15

Updated : 2025-02-28 16:15


NVD link : CVE-2025-25325

Mitre link : CVE-2025-25325

CVE.ORG link : CVE-2025-25325


JSON object : View

Products Affected

No product.

CWE
CWE-84

Improper Neutralization of Encoded URI Schemes in a Web Page