CVE-2025-14007 | dayrui XunRuiCMS up to 4.7.1 Domain Name Binding Page admin79f2ec220c7e.php?c=api&m=demo&name=mobile cross site scripting
A vulnerability described as problematic has been identified in dayrui XunRuiCMS up to 4.7.1. This affects an unknown part of the file /admin79f2ec220c7e.php?c=api&m=demo&name=mobile of the component Domain Name Binding Page. The manipulation results in cross site scripting.
This vulnerability was named CVE-2025-14007. The attack may be performed from remote. In addition, an exploit is available.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More