Логотип exploitDog
bind:CVE-2025-40670
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-40670

Количество 2

Количество 2

nvd логотип

CVE-2025-40670

8 месяцев назад

Incorrect authorization vulnerability in TCMAN's GIM v11. This vulnerability allows an unprivileged attacker to create a user and assign it many privileges by sending a POST request to /PC/frmGestionUser.aspx/updateUser.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-jw8p-xr8r-2w5h

8 месяцев назад

Incorrect authorization vulnerability in TCMAN's GIM v11. This vulnerability allows an unprivileged attacker to create a user and assign it many privileges by sending a POST request to /PC/frmGestionUser.aspx/updateUser.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-40670

Incorrect authorization vulnerability in TCMAN's GIM v11. This vulnerability allows an unprivileged attacker to create a user and assign it many privileges by sending a POST request to /PC/frmGestionUser.aspx/updateUser.

CVSS3: 8.8
0%
Низкий
8 месяцев назад
github логотип
GHSA-jw8p-xr8r-2w5h

Incorrect authorization vulnerability in TCMAN's GIM v11. This vulnerability allows an unprivileged attacker to create a user and assign it many privileges by sending a POST request to /PC/frmGestionUser.aspx/updateUser.

CVSS3: 8.8
0%
Низкий
8 месяцев назад

Уязвимостей на страницу