Логотип exploitDog
bind:CVE-2025-10644
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-10644

Количество 3

Количество 3

nvd логотип

CVE-2025-10644

5 месяцев назад

Wondershare Repairit SAS Token Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on Wondershare Repairit. Authentication is not required to exploit this vulnerability. The specific flaw exists within the permissions granted to an SAS token. An attacker can leverage this vulnerability to launch a supply-chain attack and execute arbitrary code on customers' endpoints. Was ZDI-CAN-26892.

CVSS3: 9.4
EPSS: Низкий
github логотип

GHSA-9hwm-8wfq-97mm

5 месяцев назад

Wondershare Repairit SAS Token Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on Wondershare Repairit. Authentication is not required to exploit this vulnerability. The specific flaw exists within the permissions granted to an SAS token. An attacker can leverage this vulnerability to launch a supply-chain attack and execute arbitrary code on customers' endpoints. Was ZDI-CAN-26892.

CVSS3: 9.4
EPSS: Низкий
fstec логотип

BDU:2026-00202

10 месяцев назад

Уязвимость программного обеспечения восстановления поврежденных файлов Wondershare Repairit, связанная с некорректным присваиванием привилегий, позволяющая нарушителю обойти существующие ограничения безопасности

CVSS3: 9.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-10644

Wondershare Repairit SAS Token Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on Wondershare Repairit. Authentication is not required to exploit this vulnerability. The specific flaw exists within the permissions granted to an SAS token. An attacker can leverage this vulnerability to launch a supply-chain attack and execute arbitrary code on customers' endpoints. Was ZDI-CAN-26892.

CVSS3: 9.4
3%
Низкий
5 месяцев назад
github логотип
GHSA-9hwm-8wfq-97mm

Wondershare Repairit SAS Token Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on Wondershare Repairit. Authentication is not required to exploit this vulnerability. The specific flaw exists within the permissions granted to an SAS token. An attacker can leverage this vulnerability to launch a supply-chain attack and execute arbitrary code on customers' endpoints. Was ZDI-CAN-26892.

CVSS3: 9.4
3%
Низкий
5 месяцев назад
fstec логотип
BDU:2026-00202

Уязвимость программного обеспечения восстановления поврежденных файлов Wondershare Repairit, связанная с некорректным присваиванием привилегий, позволяющая нарушителю обойти существующие ограничения безопасности

CVSS3: 9.4
3%
Низкий
10 месяцев назад

Уязвимостей на страницу