Metrics
Affected Vendors & Products
Mon, 22 Sep 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 22 Sep 2025 10:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Jeecg
Jeecg jimureport |
|
Vendors & Products |
Jeecg
Jeecg jimureport |
Sun, 21 Sep 2025 23:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was determined in jeecgboot JimuReport up to 2.1.2. Affected is an unknown function of the file /drag/onlDragDataSource/testConnection of the component DB2 JDBC Handler. Executing manipulation of the argument clientRerouteServerListJNDIName can lead to deserialization. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized. | |
Title | jeecgboot JimuReport DB2 JDBC testConnection deserialization | |
Weaknesses | CWE-20 CWE-502 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-09-22T13:42:40.008Z
Reserved: 2025-09-21T08:19:29.004Z
Link: CVE-2025-10771

Updated: 2025-09-22T13:42:21.589Z

Status : Awaiting Analysis
Published: 2025-09-21T23:15:35.150
Modified: 2025-09-22T21:23:01.543
Link: CVE-2025-10771

No data.