CVE-2025-8322

The e-School from Ventem has a Missing Authorization vulnerability, allowing remote attackers with regular privilege to access administrator functions, including creating, modifying, and deleting accounts. They can even escalate any account to system administrator privilege.
Configurations

No configuration.

History

31 Jul 2025, 18:42

Type Values Removed Values Added
Summary
  • (es) e-School from Ventem presenta una vulnerabilidad de falta de autorización, lo que permite a atacantes remotos con privilegios regulares acceder a funciones de administrador, como crear, modificar y eliminar cuentas. Incluso pueden escalar cualquier cuenta a privilegios de administrador del sistema.

30 Jul 2025, 04:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-30 04:16

Updated : 2025-07-31 18:42


NVD link : CVE-2025-8322

Mitre link : CVE-2025-8322

CVE.ORG link : CVE-2025-8322


JSON object : View

Products Affected

No product.

CWE
CWE-862

Missing Authorization