PT-2025-53863 · Phpems · Phpems

Byebyedoggy

·

Published

2025-12-30

·

Updated

2025-12-30

·

CVE-2025-15244

CVSS v3.1

3.7

Low

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions PHPEMS versions prior to 11.1
Description A flaw exists in PHPEMS related to the Purchase Request Handler component. This issue results in a race condition that can be triggered remotely. Exploitation requires a high level of complexity and is considered difficult. The details of the exploit have been publicly disclosed.
Recommendations Update PHPEMS to version 11.1 or later.

Exploit

Fix

Race Condition

Weakness Enumeration

Related Identifiers

CVE-2025-15244

Affected Products

Phpems