Логотип exploitDog
bind:CVE-2025-61148
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-61148

Количество 2

Количество 2

nvd логотип

CVE-2025-61148

2 месяца назад

An Insecure Direct Object Reference (IDOR) vulnerability in the EduplusCampus 3.0.1 Student Payment API allows authenticated users to access other students personal and financial records by modifying the 'rec_no' parameter in the /student/get-receipt endpoint.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-fp99-3rpw-vrxx

2 месяца назад

An Insecure Direct Object Reference (IDOR) vulnerability in the EduplusCampus 3.0.1 Student Payment API allows authenticated users to access other students personal and financial records by modifying the 'rec_no' parameter in the /student/get-receipt endpoint.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-61148

An Insecure Direct Object Reference (IDOR) vulnerability in the EduplusCampus 3.0.1 Student Payment API allows authenticated users to access other students personal and financial records by modifying the 'rec_no' parameter in the /student/get-receipt endpoint.

CVSS3: 6.5
0%
Низкий
2 месяца назад
github логотип
GHSA-fp99-3rpw-vrxx

An Insecure Direct Object Reference (IDOR) vulnerability in the EduplusCampus 3.0.1 Student Payment API allows authenticated users to access other students personal and financial records by modifying the 'rec_no' parameter in the /student/get-receipt endpoint.

CVSS3: 6.5
0%
Низкий
2 месяца назад

Уязвимостей на страницу