Логотип exploitDog
bind:CVE-2025-25777
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-25777

Количество 2

Количество 2

nvd логотип

CVE-2025-25777

10 месяцев назад

Insecure Direct Object Reference (IDOR) in Codeastro Bus Ticket Booking System v1.0 allows unauthorized access to user profiles. By manipulating the user ID in the URL, an attacker can access another user's profile without proper authentication or authorization checks.

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-rgw7-rhh8-mgf9

10 месяцев назад

Insecure Direct Object Reference (IDOR) in Codeastro Bus Ticket Booking System v1.0 allows unauthorized access to user profiles. By manipulating the user ID in the URL, an attacker can access another user's profile without proper authentication or authorization checks.

CVSS3: 8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-25777

Insecure Direct Object Reference (IDOR) in Codeastro Bus Ticket Booking System v1.0 allows unauthorized access to user profiles. By manipulating the user ID in the URL, an attacker can access another user's profile without proper authentication or authorization checks.

CVSS3: 8
0%
Низкий
10 месяцев назад
github логотип
GHSA-rgw7-rhh8-mgf9

Insecure Direct Object Reference (IDOR) in Codeastro Bus Ticket Booking System v1.0 allows unauthorized access to user profiles. By manipulating the user ID in the URL, an attacker can access another user's profile without proper authentication or authorization checks.

CVSS3: 8
0%
Низкий
10 месяцев назад

Уязвимостей на страницу