Логотип exploitDog
bind:CVE-2025-57130
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-57130

Количество 2

Количество 2

nvd логотип

CVE-2025-57130

3 месяца назад

An Incorrect Access Control vulnerability in the user management component of ZwiiCMS up to v13.6.07 allows a remote, authenticated attacker to escalate their privileges. By sending a specially crafted HTTP request, a low-privilege user can access and modify the profile data of any other user, including administrators.

CVSS3: 8.3
EPSS: Низкий
github логотип

GHSA-xc2m-hmp7-hc44

3 месяца назад

An Incorrect Access Control vulnerability in the user management component of ZwiiCMS up to v13.6.07 allows a remote, authenticated attacker to escalate their privileges. By sending a specially crafted HTTP request, a low-privilege user can access and modify the profile data of any other user, including administrators.

CVSS3: 8.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-57130

An Incorrect Access Control vulnerability in the user management component of ZwiiCMS up to v13.6.07 allows a remote, authenticated attacker to escalate their privileges. By sending a specially crafted HTTP request, a low-privilege user can access and modify the profile data of any other user, including administrators.

CVSS3: 8.3
0%
Низкий
3 месяца назад
github логотип
GHSA-xc2m-hmp7-hc44

An Incorrect Access Control vulnerability in the user management component of ZwiiCMS up to v13.6.07 allows a remote, authenticated attacker to escalate their privileges. By sending a specially crafted HTTP request, a low-privilege user can access and modify the profile data of any other user, including administrators.

CVSS3: 8.3
0%
Низкий
3 месяца назад

Уязвимостей на страницу