Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-10084

Опубликовано: 08 сент. 2025
Источник: nvd
CVSS3: 4.3
CVSS2: 4
EPSS Низкий

Описание

A vulnerability was identified in elunez eladmin up to 2.7. This affects the function queryErrorLogDetail of the file /api/logs/error/1 of the component SysLogController. The manipulation leads to improper authorization. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:eladmin:eladmin:*:*:*:*:*:*:*:*
Версия до 2.7 (включая)

EPSS

Процентиль: 4%
0.00019
Низкий

4.3 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-266

Связанные уязвимости

CVSS3: 4.3
github
5 месяцев назад

A vulnerability was identified in elunez eladmin up to 2.7. This affects the function queryErrorLogDetail of the file /api/logs/error/1 of the component SysLogController. The manipulation leads to improper authorization. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

EPSS

Процентиль: 4%
0.00019
Низкий

4.3 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-266