- Description
- It has been found that the Beta10 software does not provide for proper authorisation control in multiple areas of the application. This deficiency could allow a malicious actor, without authentication, to access private areas and/or areas intended for other roles. The vulnerability has been identified at least in the file or path ‘/app/tools.html’.
- Source
- cve-coordination@incibe.es
- NVD status
- Awaiting Analysis
CVSS 3.1
- Type
- Secondary
- Base score
- 9.8
- Impact score
- 5.9
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- CRITICAL
- cve-coordination@incibe.es
- CWE-287
- Hype score
- Not currently trending
CVE-2025-0637 Unauthenticated Access Vulnerability in Beta10's Authorisation Controls https://t.co/ntidKrWm6I
@VulmonFeeds
23 Jan 2025
1 Impression
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[CVE-2025-0637: CRITICAL] Beta10 software is vulnerable to authorization control issues, allowing unauthorized access to private areas. An identified vulnerability is in '/app/tools.html'. #cybersecurity#cybersecurity,#vulnerability https://t.co/gO4OZWkEP0 https://t.co/E9MHxviiep
@CveFindCom
23 Jan 2025
22 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes