PT-2025-15982 · Maxkb · Maxkb

Liqiang-Fit2Cloud

·

Published

2025-04-10

·

Updated

2025-08-01

·

CVE-2025-32383

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: MaxKB versions prior to 1.10.4-lts
Description: A reverse shell vulnerability exists in the module of the function library, allowing privileged users to create a reverse shell. This issue is related to the function library module.
Recommendations: For versions prior to 1.10.4-lts, update to version 1.10.4-lts to resolve the issue. As a temporary workaround, consider restricting access to the function library module to minimize the risk of exploitation.

Exploit

Fix

RCE

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2025-32383
GHSA-FJF6-6CVF-XR72

Affected Products

Maxkb