PT-2025-32408 · Unknown · Zlt2000 Microservices-Platform

Zast.Ai

·

Published

2025-08-08

·

Updated

2025-08-08

·

CVE-2025-8737

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions zlt2000 microservices-platform versions through 6.0.0
Description A problematic issue exists in zlt2000 microservices-platform. The issue is related to an open redirect vulnerability within the onLogoutSuccess function located in the file src/main/java/com/central/oauth/handler/OauthLogoutSuccessHandler.java. Manipulation of the redirect url argument can trigger the vulnerability, allowing for remote exploitation. The exploit has been publicly disclosed.
Recommendations versions prior to 6.0.1 At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Open Redirect

Weakness Enumeration

Related Identifiers

CVE-2025-8737

Affected Products

Zlt2000 Microservices-Platform