PT-2025-39364 · Mikecen · Wechat-Face-Recognition

Dev03301

·

Published

2025-09-25

·

Updated

2025-09-25

·

CVE-2025-10943

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions MikeCen WeChat-Face-Recognition (affected versions not specified)
Description A security flaw exists in MikeCen WeChat-Face-Recognition. The issue involves cross site scripting resulting from manipulation of the echostr argument within the valid function of the wx.php file. This attack can be launched remotely. The product does not use versioning, and information about affected and unaffected releases is unavailable. The vendor was contacted regarding this disclosure but did not respond.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2025-10943

Affected Products

Wechat-Face-Recognition