CVE-2025-11315
06.10.2025, 02:15
A vulnerability was found in Tipray Data Leakage Prevention System 1.0. Affected by this vulnerability is the function findUserPage of the file findUserPage.do. Performing manipulation of the argument sort results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
Awaiting analysis
This vulnerability is currently awaiting analysis.
References