A vulnerability has been found in Gosuncn Technology Group Audio-Visual Integrated Management Platform 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /sysmgr/user/listByPage. The manipulation leads to information disclosure. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
History

Tue, 08 Jul 2025 17:15:00 +0000

Type Values Removed Values Added
First Time appeared Gosuncntech
Gosuncntech group Audio-visual Integrated Management
CPEs cpe:2.3:a:gosuncntech:group_audio-visual_integrated_management:1.0:*:*:*:*:*:*:*
Vendors & Products Gosuncntech
Gosuncntech group Audio-visual Integrated Management

Mon, 12 May 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sun, 11 May 2025 08:45:00 +0000

Type Values Removed Values Added
Description A vulnerability has been found in Gosuncn Technology Group Audio-Visual Integrated Management Platform 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /sysmgr/user/listByPage. The manipulation leads to information disclosure. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Title Gosuncn Technology Group Audio-Visual Integrated Management Platform listByPage information disclosure
Weaknesses CWE-200
CWE-284
References
Metrics cvssV2_0

{'score': 5, 'vector': 'AV:N/AC:L/Au:N/C:P/I:N/A:N'}

cvssV3_0

{'score': 5.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}

cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2025-05-12T14:20:49.763Z

Reserved: 2025-05-10T06:05:18.123Z

Link: CVE-2025-4536

cve-icon Vulnrichment

Updated: 2025-05-12T14:20:01.463Z

cve-icon NVD

Status : Analyzed

Published: 2025-05-11T09:15:17.287

Modified: 2025-07-08T16:59:31.103

Link: CVE-2025-4536

cve-icon Redhat

No data.