216.73.217.22

CVE-2025-8532

· Published 19/09/2025 15:15 · Modified 19/09/2025 16:00

Labels: CVE-2025-8532 2025-09-19CVE-2025-8532CWE-285[email protected]

Essential information

Published
19/09/2025 15:15
Modified
19/09/2025 16:00
Author
Creator
CVSS
6.4 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:H/A:N

CVSS metrics

Description

Authorization Bypass Through User-Controlled Key, CWE - 862 - Missing Authorization, – Improper Authorization vulnerability in Bimser Solution Software Trade Inc. EBA Document and Workflow Management System allows – Exploitation of Trusted Identifiers, – Exploitation of Authorization, – Variable Manipulation.This issue affects eBA Document and Workflow Management System: from 6.7.164 before 6.7.166.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
bimser solution software trade inc / eba document and workflow management system cpe:2.3:a:bimser_solution_software_trade_inc:eba_document_and_workflow_management_system:6.7.164-6.7.166:*:*:*:*:*:*:*

References