A vulnerability, which was classified as problematic, was found in Gosuncn Technology Group Audio-Visual Integrated Management Platform 4.0. Affected is an unknown function of the file /config/config.properties of the component Configuration File Handler. The manipulation leads to information disclosure. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
History

Tue, 08 Jul 2025 17:15:00 +0000

Type Values Removed Values Added
First Time appeared Gosuncntech
Gosuncntech group Audio-visual Integrated Management
CPEs cpe:2.3:a:gosuncntech:group_audio-visual_integrated_management:4.0:*:*:*:*:*:*:*
Vendors & Products Gosuncntech
Gosuncntech group Audio-visual Integrated Management

Mon, 12 May 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sun, 11 May 2025 08:15:00 +0000

Type Values Removed Values Added
Description A vulnerability, which was classified as problematic, was found in Gosuncn Technology Group Audio-Visual Integrated Management Platform 4.0. Affected is an unknown function of the file /config/config.properties of the component Configuration File Handler. The manipulation leads to information disclosure. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Title Gosuncn Technology Group Audio-Visual Integrated Management Platform Configuration File config.properties information disclosure
Weaknesses CWE-200
CWE-284
References
Metrics cvssV2_0

{'score': 5, 'vector': 'AV:N/AC:L/Au:N/C:P/I:N/A:N'}

cvssV3_0

{'score': 5.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}

cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2025-05-12T14:21:27.118Z

Reserved: 2025-05-10T06:01:47.421Z

Link: CVE-2025-4535

cve-icon Vulnrichment

Updated: 2025-05-12T14:21:17.329Z

cve-icon NVD

Status : Analyzed

Published: 2025-05-11T08:15:20.510

Modified: 2025-07-08T16:57:59.043

Link: CVE-2025-4535

cve-icon Redhat

No data.