CVE-2025-27580 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

NIH BRICS (aka Biomedical Research Informatics Computing System) through 14.0.0-67 generates predictable tokens (that depend on username, time, and the fixed 7D…
High CVSS: 7.5

CVE-2025-27580

NIH BRICS (aka Biomedical Research Informatics Computing System) through 14.0.0-67 generates predictable tokens (that depend on username, time, and the fixed 7Dl9#dj- string) and thus allows unauthenticated users with a Common Access Card (CAC) to escalate privileges and compromise any account, including administrators.
Vendor
-
Product
-
CWE
CWE-335
Yayın Tarihi
2025-04-24 00:15:16
Güncelleme
2025-04-29 13:52:47
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar