Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-8532

Опубликовано: 19 сент. 2025
Источник: nvd
CVSS3: 6.4
EPSS Низкий

Описание

Authorization Bypass Through User-Controlled Key, Improper Authorization vulnerability in Bimser Solution Software Trade Inc. EBA Document and Workflow Management System allows Forceful Browsing.This issue affects eBA Document and Workflow Management System: from 6.7.164 before 6.7.166.

EPSS

Процентиль: 4%
0.0002
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-285

Связанные уязвимости

CVSS3: 6.4
github
5 месяцев назад

Authorization Bypass Through User-Controlled Key, CWE - 862 - Missing Authorization, – Improper Authorization vulnerability in Bimser Solution Software Trade Inc. EBA Document and Workflow Management System allows – Exploitation of Trusted Identifiers, – Exploitation of Authorization, – Variable Manipulation.This issue affects eBA Document and Workflow Management System: from 6.7.164 before 6.7.166.

EPSS

Процентиль: 4%
0.0002
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-285