Vulnerability Description
A weakness has been identified in fuyang_lipengjun platform 1.0.0. This issue affects the function queryAll of the file /adposition/queryAll of the component AdPositionController. This manipulation causes improper authorization. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited. Affects another part than CVE-2025-9936.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Fuyang Lipengjun | Platform | 1.0.0 |
Related Weaknesses (CWE)
References
- https://vuldb.com/?ctiid.323042Permissions RequiredVDB Entry
- https://vuldb.com/?id.323042Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.644661Third Party AdvisoryVDB Entry
- https://www.cnblogs.com/aibot/p/19063427ExploitThird Party Advisory
FAQ
What is CVE-2025-10086?
CVE-2025-10086 is a vulnerability with a CVSS score of 6.3 (MEDIUM). A weakness has been identified in fuyang_lipengjun platform 1.0.0. This issue affects the function queryAll of the file /adposition/queryAll of the component AdPositionController. This manipulation ca...
How severe is CVE-2025-10086?
CVE-2025-10086 has been rated MEDIUM with a CVSS base score of 6.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-10086?
Check the references section above for vendor advisories and patch information. Affected products include: Fuyang Lipengjun Platform.