CVE-2025-54766 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

An API endpoint that should be limited to web application administrators is hidden from, but accessible by, lower-level read only web application users. The end…
Medium CVSS: 5.3

CVE-2025-54766

An API endpoint that should be limited to web application administrators is hidden from, but accessible by, lower-level read only web application users. The endpoint can be used to export the appliance configuration, exposing sensitive information.
Vendor
Xorux
Product
Xormon
CWE
CWE-648
Yayın Tarihi
2025-07-29 00:15:24
Güncelleme
2025-11-03 20:19:14
Source Identifier
bbf0bd87-ece2-41be-b873-96928ee8fab9
KEV Date Added
-

Kategoriler

Referanslar