PT-2025-39364 · Mikecen · Wechat-Face-Recognition
Dev03301
·
Published
2025-09-25
·
Updated
2025-09-25
·
CVE-2025-10943
CVSS v2.0
4.0
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
MikeCen WeChat-Face-Recognition (affected versions not specified)
Description
A security flaw exists in MikeCen WeChat-Face-Recognition. The issue involves cross site scripting resulting from manipulation of the
echostr argument within the valid function of the wx.php file. This attack can be launched remotely. The product does not use versioning, and information about affected and unaffected releases is unavailable. The vendor was contacted regarding this disclosure but did not respond.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
XSS
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Wechat-Face-Recognition