CVE-2025-4281 is an information disclosure vulnerability in the Shenzhen Sixun Software Sixun Shanghui Group Business Management System 7, specifically affecting an unknown part of the /api/GylOperator/LoadData file. This vulnerability has a CVSS score of 4.3 (MEDIUM), indicating a low impact on confidentiality with no integrity or availability impact, and can be exploited remotely with low attack complexity and privileges. While public exploit disclosure exists, there is no evidence of active exploitation, and it has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Shenzhen Sixun Software | Sixun Shanghui Group Business Management System | 7CNA affected |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.