CVE-2025-15374
EUVD-2025-20587431.12.2025, 05:16
A vulnerability was detected in EyouCMS up to 1.7.7. The affected element is an unknown function of the file application/home/model/Ask.php of the component Ask Module. Performing a manipulation of the argument content results in cross site scripting. The attack can be initiated remotely. The exploit is now public and may be used. The vendor is "[a]cknowledging the existence of the vulnerability, we have completed the fix and will release a new version, v1.7.8".
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| eyoucms | eyoucms | 𝑥 < 1.7.8 |
𝑥
= Vulnerable software versions
References