216.73.216.6

CVE-2025-8025

· Published 11/02/2026 13:15 · Modified 11/02/2026 15:27

Labels: CVE-2025-8025 2026-02-11CVE-2025-8025CWE-284[email protected]

Essential information

Published
11/02/2026 13:15
Modified
11/02/2026 15:27
Author
Creator
CVSS
9.8 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

Missing Authentication for Critical Function, Improper Access Control vulnerability in Dinosoft Business Solutions Dinosoft ERP allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Dinosoft ERP: from < 3.0.1 through 11022026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
dinosoft business solutions / dinosoft erp cpe:2.3:a:dinosoft_business_solutions:dinosoft_erp:<3.0.1-11022026:*:*:*:*:*:*:*

References