'; } else{ echo ''; } echo '
|
|||
Release Date:2025/9/15
Rule Name:CVE-2025-32966,CVE-2025-49002:fit2cloud DataEase Remote Code Execution Vulnerability
Severity:high
CVE ID:CVE-2025-32966 CVE-2025-49002
Descripiton:
|
DataEase is an open source data visualization analysis tool of DataEase. It is used to help users quickly analyze data and insight into business trends, so as to achieve business improvement and optimization. DataEase before 2.10.10 has a security vulnerability, which originates from the backend JDBC link and may lead to remote code execution. This rule supports to defend the A6: Vulnerabe and Outdated Components of OWASP Top 10 - 2021.
Other reference:None
Solution:
|
Update vendor patches.