PT-2025-46951 · Unknown · Optimus Software Brokerage Automation
CVE-2025-8855
·
Publicado
2025-11-14
·
Atualizado
2025-11-17
CVSS v3.1
8.1
Alta
| Vetor | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Optimus Software Brokerage Automation versions prior to 1.1.71
Description
The software contains flaws related to authentication bypass and authorization. The issue involves exploiting trust in client data and manipulating registry information. A weak password recovery mechanism for forgotten passwords and an authorization bypass through a user-controlled key are present.
Recommendations
Update Optimus Software Brokerage Automation to version 1.1.71 or later.
Correção
IDOR
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Optimus Software Brokerage Automation