Medium severity6.5NVD Advisory· Published Nov 7, 2025· Updated Jun 17, 2026
CVE-2025-63686
CVE-2025-63686
Description
There is an arbitrary file download vulnerability in GuoMinJim PersonManage thru commit 5a02b1ab208feacf3a34fc123c9381162afbaa95 (2020-11-23) in the document query function under the Download Center menu in the PersonManage system.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3(expand)+ 2 more
- (no CPE)
- (no CPE)
- cpe:2.3:a:guominjim:personmanage:*:*:*:*:*:*:*:*range: <=1.0
Patches
Vulnerability mechanics
References
2- gist.github.com/LockeTom/95b2a47f2dcb27e62690754993a4c7cdnvdExploitThird Party Advisory
- github.com/GuoMinJim/PersonManage/issues/10nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.