CVE-2025-3037

MEDIUM

yzk2356911358 StudentServlet-JSP - CSRF

Title source: llm
STIX 2.1

Description

A vulnerability has been found in yzk2356911358 StudentServlet-JSP cc0cdce25fbe43b6c58b60a77a2c85f52d2102f5/d4d7a0643f1dae908a4831206f2714b21820f991 and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available.

References (5)

Core 5
Core References
Permissions Required, VDB Entry vdb-entry
https://vuldb.com/?id.302098
Permissions Required, VDB Entry signature permissions-required
https://vuldb.com/?ctiid.302098
Permissions Required, VDB Entry third-party-advisory
https://vuldb.com/?submit.524631

Scores

CVSS v3 4.3
EPSS 0.0027
EPSS Percentile 18.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-352 CWE-862
Status published
Products (2)
yzk2356911358/StudentServlet-JSP cc0cdce25fbe43b6c58b60a77a2c85f52d2102f5
yzk2356911358/StudentServlet-JSP d4d7a0643f1dae908a4831206f2714b21820f991
Published Mar 31, 2025
Tracked Since Feb 18, 2026