PT-2025-31911 · Unknown · Atjiu Pybbs

Zast.Ai

·

Published

2025-08-05

·

Updated

2025-08-05

·

CVE-2025-8550

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions atjiu pybbs versions prior to 6.0.0
Description A vulnerability exists in atjiu pybbs up to version 6.0.0, affecting an unknown functionality within the /admin/topic/list file. Manipulation of the username parameter can lead to cross site scripting (XSS). The attack can be launched remotely. The exploit has been publicly disclosed.
Recommendations Apply the patch named 2fe4a51afbce0068c291bc1818bbc8f7f3b01a22 to resolve this issue.

Exploit

Fix

Code Injection

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-8550

Affected Products

Atjiu Pybbs