Arbitrary File Download Vulnerability in GuoMinJim PersonManage System
CVE-2025-63686

6.5MEDIUM

Key Information:

Vendor

GuoMinJim

Vendor
CVE Published:
7 November 2025

What is CVE-2025-63686?

An arbitrary file download vulnerability exists in the GuoMinJim PersonManage system, specifically within the document query function under the Download Center menu. This issue arises from insufficient validation of user inputs, allowing unauthorized access to sensitive files. Exploiting this vulnerability can lead to unauthorized information disclosure, highlighting the need for immediate action to secure the affected systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.