Unknown · Opplus Springboot-Admin · CVE-2025-3957
**Name of the Vulnerable Software and Affected Versions**
opplus springboot-admin version 1.0
**Description**
A critical issue affects the processing of the file `SysLogDao.xml`. The manipulation of the argument order leads to SQL injection. The attack may be initiated remotely.
**Recommendations**
For opplus springboot-admin version 1.0, consider restricting access to the `SysLogDao.xml` file until a patch is available. As a temporary workaround, review and modify the argument order processing to prevent SQL injection attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.