Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-57788

Опубликовано: 20 авг. 2025
Источник: nvd
CVSS3: 6.5
EPSS Высокий

Описание

A vulnerability in a known login mechanism allows unauthenticated attackers to execute API calls without requiring user credentials. RBAC helps limit the exposure but does not eliminate risk.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:commvault:commvault:*:*:*:*:*:*:*:*
Версия до 11.36.60 (исключая)

EPSS

Процентиль: 99%
0.83652
Высокий

6.5 Medium

CVSS3

Дефекты

CWE-259

Связанные уязвимости

CVSS3: 6.5
github
6 месяцев назад

An issue was discovered in Commvault before 11.36.60. A vulnerability in a known login mechanism allows unauthenticated attackers to execute API calls without requiring user credentials. RBAC helps limit the exposure but does not eliminate risk.

EPSS

Процентиль: 99%
0.83652
Высокий

6.5 Medium

CVSS3

Дефекты

CWE-259