« Volver al listado

CVE-2025-31103

Estado: AnalizadaAlta (7.5)—

Untrusted data deserialization vulnerability exists in a-blog cms. Processing a specially crafted request may store arbitrary files on the server where the product is running. This can be leveraged to execute an arbitrary script on the server.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

🎯 Técnicas ATT&CK

Cómo se explota esta vulnerabilidad y qué consigue el atacante, en el lenguaje de MITRE ATT&CK.

Vector AV:N/AC:L/PR:N indica red sin autenticación. CWE-502 (deserialización insegura) permite escribir archivos arbitrarios, habilitando ejecución de código en el servidor a través de scripts.

Inferido por nuestro agente de análisis a partir de la descripción oficial, el vector CVSS y la CWE, y comprobado por un supervisor. Puede contener errores.

🛡️ Mitigaciones ATT&CK que cubren estas técnicas

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2025-31103",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2025-31103",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "yes"
            },
            {
              "technicalImpact": "partial"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2025-03-31T12:59:04.427491Z"
        }
      }
    ],
    "cvssMetricV30": [
      {
        "type": "Secondary",
        "source": "vultures@jpcert.or.jp",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.0",
          "baseScore": 7.5,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "NONE",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 3.9
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 7.5,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "NONE",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "vultures@jpcert.or.jp",
      "affectedData": [
        {
          "vendor": "appleple inc.",
          "product": "a-blog cms (Ver.3.1.x series)",
          "versions": [
            {
              "status": "affected",
              "version": "prior to Ver.3.1.37"
            }
          ]
        },
        {
          "vendor": "appleple inc.",
          "product": "a-blog cms (Ver.3.0.x series)",
          "versions": [
            {
              "status": "affected",
              "version": "prior to Ver.3.0.41"
            }
          ]
        },
        {
          "vendor": "appleple inc.",
          "product": "a-blog cms (Ver.2.11.x series)",
          "versions": [
            {
              "status": "affected",
              "version": "prior to Ver.2.11.70"
            }
          ]
        },
        {
          "vendor": "appleple inc.",
          "product": "a-blog cms (Ver.2.10.x series)",
          "versions": [
            {
              "status": "affected",
              "version": "prior to Ver.2.10.58"
            }
          ]
        },
        {
          "vendor": "appleple inc.",
          "product": "a-blog cms (Ver.2.9.x series)",
          "versions": [
            {
              "status": "affected",
              "version": "prior to Ver.2.9.46"
            }
          ]
        },
        {
          "vendor": "appleple inc.",
          "product": "a-blog cms (Ver. 2.8.x series)",
          "versions": [
            {
              "status": "affected",
              "version": "prior to Ver.2.8.80"
            }
          ]
        }
      ]
    }
  ],
  "published": "2025-03-31T05:15:16.500",
  "references": [
    {
      "url": "https://developer.a-blogcms.jp/blog/news/entry-4197.html",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "vultures@jpcert.or.jp"
    },
    {
      "url": "https://developer.a-blogcms.jp/blog/news/security-update202503.html",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "vultures@jpcert.or.jp"
    },
    {
      "url": "https://jvn.jp/en/jp/JVN66982699/",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "vultures@jpcert.or.jp"
    }
  ],
  "vulnStatus": "Analyzed",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "vultures@jpcert.or.jp",
      "description": [
        {
          "lang": "en",
          "value": "CWE-502"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Untrusted data deserialization vulnerability exists in a-blog cms. Processing a specially crafted request may store arbitrary files on the server where the product is running. This can be leveraged to execute an arbitrary script on the server."
    },
    {
      "lang": "es",
      "value": "Existe una vulnerabilidad de deserialización de datos no confiables en a-blog CMS. Al procesar una solicitud especialmente manipulada, se pueden almacenar archivos arbitrarios en el servidor donde se ejecuta el producto. Esto puede aprovecharse para ejecutar un script arbitrario en el servidor."
    }
  ],
  "lastModified": "2026-06-17T09:09:52.540",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:appleple:a-blog_cms:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "60F04B77-7245-4462-A93E-B6EABF10070A",
              "versionEndIncluding": "2.8.80"
            },
            {
              "criteria": "cpe:2.3:a:appleple:a-blog_cms:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5E221BFF-CC8F-4CA6-ACF3-259586C36F43",
              "versionEndIncluding": "2.9.46",
              "versionStartIncluding": "2.9.0"
            },
            {
              "criteria": "cpe:2.3:a:appleple:a-blog_cms:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "94D68E7F-750D-41C6-A7AF-50B817B5C717",
              "versionEndExcluding": "2.10.58",
              "versionStartIncluding": "2.10.0"
            },
            {
              "criteria": "cpe:2.3:a:appleple:a-blog_cms:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "58C9FB4E-2C16-4989-9E08-3AE7BDD80518",
              "versionEndExcluding": "2.11.70",
              "versionStartIncluding": "2.11.0"
            },
            {
              "criteria": "cpe:2.3:a:appleple:a-blog_cms:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "B7985F2B-BF4C-4B00-9988-D184037229A1",
              "versionEndExcluding": "3.0.41",
              "versionStartIncluding": "3.0.0"
            },
            {
              "criteria": "cpe:2.3:a:appleple:a-blog_cms:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "666198C0-5D1D-442F-8659-358F7AC09A0B",
              "versionEndExcluding": "3.1.37",
              "versionStartIncluding": "3.1.0"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "vultures@jpcert.or.jp"
}