CVE-2025-25497 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

An issue in account management interface in Netsweeper Server v.8.2.6 and earlier (fixed in v.8.2.7) allows unauthorized changes to the "Account Owner" field du…
High CVSS: 8.1

CVE-2025-25497

An issue in account management interface in Netsweeper Server v.8.2.6 and earlier (fixed in v.8.2.7) allows unauthorized changes to the "Account Owner" field due to client-side-only restrictions and a lack of server-side validation. This vulnerability enables account ownership reassignment to or away from any user.
Vendor
-
Product
-
CWE
CWE-602
Yayın Tarihi
2025-03-06 20:15:38
Güncelleme
2025-03-07 20:15:38
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar