Логотип exploitDog
bind:CVE-2025-67282
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-67282

Количество 2

Количество 2

nvd логотип

CVE-2025-67282

около 1 месяца назад

In TIM BPM Suite/ TIM FLOW through 9.1.2 multiple Authorization Bypass vulnerabilities exists which allow a low privileged user to download password hashes of other user, access work items of other user, modify restricted content in workflows, modify the applications logo and manipulate the profile of other user.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-vhrf-h3r9-63x8

около 1 месяца назад

In TIM BPM Suite/ TIM FLOW through 9.1.2 multiple Authorization Bypass vulnerabilities exists which allow a low privileged user to download password hashes of other user, access work items of other user, modify restricted content in workflows, modify the applications logo and manipulate the profile of other user.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-67282

In TIM BPM Suite/ TIM FLOW through 9.1.2 multiple Authorization Bypass vulnerabilities exists which allow a low privileged user to download password hashes of other user, access work items of other user, modify restricted content in workflows, modify the applications logo and manipulate the profile of other user.

CVSS3: 5.4
0%
Низкий
около 1 месяца назад
github логотип
GHSA-vhrf-h3r9-63x8

In TIM BPM Suite/ TIM FLOW through 9.1.2 multiple Authorization Bypass vulnerabilities exists which allow a low privileged user to download password hashes of other user, access work items of other user, modify restricted content in workflows, modify the applications logo and manipulate the profile of other user.

CVSS3: 5.4
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу