Vulnerability Description
A vulnerability has been found in macrozheng mall up to 1.0.3. This impacts an unknown function of the component Registration. Such manipulation leads to weak password requirements. The attack can be executed remotely. Attacks of this nature are highly complex. The exploitability is said to be difficult. The vendor deleted the GitHub issue for this vulnerability without and explanation.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Macrozheng | Mall | <= 1.0.3 |
Related Weaknesses (CWE)
References
- https://github.com/macrozheng/mall/issues/923Not Applicable
- https://vuldb.com/?ctiid.321507Permissions RequiredVDB Entry
- https://vuldb.com/?id.321507Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.635503Third Party AdvisoryVDB Entry
FAQ
What is CVE-2025-9514?
CVE-2025-9514 is a vulnerability with a CVSS score of 3.7 (LOW). A vulnerability has been found in macrozheng mall up to 1.0.3. This impacts an unknown function of the component Registration. Such manipulation leads to weak password requirements. The attack can be ...
How severe is CVE-2025-9514?
CVE-2025-9514 has been rated LOW with a CVSS base score of 3.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-9514?
Check the references section above for vendor advisories and patch information. Affected products include: Macrozheng Mall.