Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-42602

Опубликовано: 23 апр. 2025
Источник: nvd
EPSS Низкий

Описание

This vulnerability exists in Meon KYC solutions due to improper handling of access and refresh tokens in certain API endpoints of authentication process. A remote attacker could exploit this vulnerability by intercepting and manipulating the responses through API request body leading to unauthorized access of other user accounts.

EPSS

Процентиль: 42%
0.00196
Низкий

Дефекты

CWE-384

Связанные уязвимости

github
10 месяцев назад

This vulnerability exists in Meon KYC solutions due to improper handling of access and refresh tokens in certain API endpoints of authentication process. A remote attacker could exploit this vulnerability by intercepting and manipulating the responses through API request body leading to unauthorized access of other user accounts.

EPSS

Процентиль: 42%
0.00196
Низкий

Дефекты

CWE-384