CVE-2025-62293 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

SOPlanning is vulnerable to Broken Access Control in /status endpoint. Due to lack of permission checks in Project Status functionality an authenticated attacke…
Medium CVSS: 5.3

CVE-2025-62293

SOPlanning is vulnerable to Broken Access Control in /status endpoint. Due to lack of permission checks in Project Status functionality an authenticated attacker is able to add, edit and delete any status.


This issue was fixed in version 1.55.
Vendor
Soplanning
Product
Soplanning
CWE
CWE-862
Yayın Tarihi
2025-11-20 16:15:59
Güncelleme
2025-11-24 13:44:41
Source Identifier
cvd@cert.pl
KEV Date Added
-

Kategoriler

Referanslar