Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-43720

Опубликовано: 21 июл. 2025
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

Headwind MDM before 5.33.1 makes configuration details accessible to unauthorized users. The Configuration profile is exposed to the Observer user role, revealing the password requires to escape out of the MDM controlled device's profile.

EPSS

Процентиль: 7%
0.0003
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 6.5
github
18 дней назад

Headwind MDM before 5.33.1 makes configuration details accessible to unauthorized users. The Configuration profile is exposed to the Observer user role, revealing the password requires to escape out of the MDM controlled device's profile.

EPSS

Процентиль: 7%
0.0003
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-862