CVE-2025-4557: Zong Yu Parking Management System

Critical severity, CVSS 9.1. EPSS: 0.5% chance of exploitation in the next 30 days.

The specific APIs of Parking Management System from ZONG YU has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to access specific APIs and operate system functions. These functions include opening gates and restarting the system.

Affected products

  • Zong Yu Parking Management System: version 0 only

Published 2025-05-12. Last modified 2026-06-17.