¡¾Îó²îͨ¸æ¡¿Apache OFBiz í§ÒâÎļþÉÏ´«Îó²î(CVE-2025-59118)
Ðû²¼Ê±¼ä 2025-11-13Ò»¡¢Îó²î¸ÅÊö
Îó²îÃû³Æ | Apache OFBiz í§ÒâÎļþÉÏ´«Îó²î | ||
CVE ID | CVE-2025-59118 | ||
Îó²îÀàÐÍ | í§ÒâÎļþÉÏ´« | ·¢Ã÷ʱ¼ä | 2025-11-13 |
Îó²îÆÀ·Ö | 7.3 | Îó²îÆ·¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ʹÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»ÐèÒª |
PoC/EXP | δ¹ûÕæ | ÔÚҰʹÓà | δ·¢Ã÷ |
Apache OFBizÊÇÒ»¸ö¿ªÔ´µÄÆóÒµ×ÊÔ´ÍýÏ루ERP£©¿ò¼Ü£¬ÌṩÁËÒ»Ì×ÍêÕûµÄÓªÒµÓ¦Óýâ¾ö¼Æ»®¡£Ëü°üÀ¨¶©µ¥ÖÎÀí¡¢¿â´æÖÎÀí¡¢»á¼Æ¡¢¿Í»§¹ØÏµÖÎÀíµÈÄ£¿é£¬Ö§³Ö¸ß¶È¶¨ÖÆ»¯¡£OFBiz»ùÓÚJava¿ª·¢£¬¾ßÓÐǿʢµÄÀ©Õ¹ÐÔºÍÎÞаÐÔ£¬ÊÊÓÃÓÚÖÖÖÖÖÐСÐÍÆóÒµµÄÓªÒµÁ÷³ÌÖÎÀí¡£
¶þ¡¢Ó°Ïì¹æÄ£
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£ºhttps://ofbiz.apache.org/download.html/
3.2 ÔÝʱ²½·¥
ÔÝÎÞ¡£


¾©¹«Íø°²±¸11010802024551ºÅ