Логотип exploitDog
bind:CVE-2025-62293
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-62293

Количество 2

Количество 2

nvd логотип

CVE-2025-62293

3 месяца назад

SOPlanning is vulnerable to Broken Access Control in /status endpoint. Due to lack of permission checks in Project Status functionality an authenticated attacker is able to add, edit and delete any status. This issue was fixed in version 1.55.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xq7p-cgf2-m4vv

3 месяца назад

SOPlanning is vulnerable to Broken Access Control in /status endpoint. Due to lack of permission checks in Project Status functionality an authenticated attacker is able to add, edit and delete any status. This issue was fixed in version 1.55.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-62293

SOPlanning is vulnerable to Broken Access Control in /status endpoint. Due to lack of permission checks in Project Status functionality an authenticated attacker is able to add, edit and delete any status. This issue was fixed in version 1.55.

CVSS3: 5.4
0%
Низкий
3 месяца назад
github логотип
GHSA-xq7p-cgf2-m4vv

SOPlanning is vulnerable to Broken Access Control in /status endpoint. Due to lack of permission checks in Project Status functionality an authenticated attacker is able to add, edit and delete any status. This issue was fixed in version 1.55.

CVSS3: 5.4
0%
Низкий
3 месяца назад

Уязвимостей на страницу