PT-2025-15305 · Unknown · Linzhaoguan Pb-Cms

·

CVE-2025-3386

·

Published

2025-04-07

·

Updated

2025-04-08

CVSS v3.1

4.8

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions LinZhaoguan pb-cms version 2.0
Description A problem was found in the Friendship Link Handler component, specifically in some unknown functionality of the file /admin#links. This issue leads to cross-site scripting and can be exploited remotely.
Recommendations For version 2.0, consider restricting access to the /admin#links file until a fix is available. As a temporary workaround, avoid using the Friendship Link Handler component until the issue is resolved.

Exploit

Fix

XSS

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-3386

Affected Products

Linzhaoguan Pb-Cms