We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-8742

macrozheng mall Admin Login excessive authentication



Description

EN DE

A vulnerability was found in macrozheng mall 1.0.3. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Admin Login. The manipulation leads to improper restriction of excessive authentication attempts. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The vendor was contacted early about this disclosure but did not respond in any way.

Eine problematische Schwachstelle wurde in macrozheng mall 1.0.3 ausgemacht. Betroffen davon ist ein unbekannter Prozess der Komponente Admin Login. Durch das Manipulieren mit unbekannten Daten kann eine improper restriction of excessive authentication attempts-Schwachstelle ausgenutzt werden. Die Umsetzung des Angriffs kann dabei über das Netzwerk erfolgen. Die Komplexität eines Angriffs ist eher hoch. Sie ist schwierig ausnutzbar.

Reserved 2025-08-08 | Published 2025-08-08 | Updated 2025-08-08 | Assigner VulDB


MEDIUM: 6.3CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X
LOW: 3.7CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N/E:X/RL:X/RC:R
LOW: 3.7CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N/E:X/RL:X/RC:R
2.6AV:N/AC:H/Au:N/C:P/I:N/A:N/E:ND/RL:ND/RC:UR

Problem types

Improper Restriction of Excessive Authentication Attempts

Improper Control of Interaction Frequency

Product status

1.0.3
affected

Timeline

2025-08-08:Advisory disclosed
2025-08-08:VulDB entry created
2025-08-08:VulDB entry last update

References

vuldb.com/?id.319238 (VDB-319238 | macrozheng mall Admin Login excessive authentication) vdb-entry

vuldb.com/?ctiid.319238 (VDB-319238 | CTI Indicators (IOB, IOC, TTP)) signature permissions-required

vuldb.com/?submit.623319 (Submit #623319 | macrozheng mall 1.0.3 Improper Restriction of Excessive Authentication Attempts) third-party-advisory

github.com/N1n3b9S/cve/issues/12 issue-tracking

cve.org (CVE-2025-8742)

nvd.nist.gov (CVE-2025-8742)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-8742

Support options

Helpdesk Chat, Email, Knowledgebase