Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-5446 | A vulnerability classified as critical was found in hzmanyun Education and Training System 3.1.1. Affected by this vulnerability is the function pdf2swf of the file /pdf2swf. The manipulation of the argument file leads to os command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. |
Thu, 29 Jan 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hzmanyun
Hzmanyun education And Training System |
|
| CPEs | cpe:2.3:a:hzmanyun:education_and_training_system:3.1.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Hzmanyun
Hzmanyun education And Training System |
Tue, 25 Feb 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 25 Feb 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability classified as critical was found in hzmanyun Education and Training System 3.1.1. Affected by this vulnerability is the function pdf2swf of the file /pdf2swf. The manipulation of the argument file leads to os command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | hzmanyun Education and Training System pdf2swf os command injection | |
| Weaknesses | CWE-77 CWE-78 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-02-25T13:53:14.254Z
Reserved: 2025-02-25T06:46:54.511Z
Link: CVE-2025-1676
Updated: 2025-02-25T13:53:08.133Z
Status : Analyzed
Published: 2025-02-25T11:15:09.303
Modified: 2026-01-29T02:09:52.927
Link: CVE-2025-1676
No data.
OpenCVE Enrichment
No data.
EUVD