PT-2025-6948 · Enituretechnology · Enituretechnology Ltl Freight Quotes – Worldwide Express Edition

·

CVE-2025-22291

·

Publicado

2025-02-16

·

Atualizado

2025-02-17

CVSS v3.1

5.3

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions: enituretechnology LTL Freight Quotes – Worldwide Express Edition versions 5.0.20 and earlier
Description: The issue allows exploitation of incorrectly configured access control security levels due to a lack of authorization. This problem can be exploited in scenarios where access control is not properly set up, potentially leading to unauthorized access.
Recommendations: For versions 5.0.20 and earlier, update to a version later than 5.0.20 to resolve the issue. At the moment, there is no information about other specific mitigation measures for this vulnerability.

Correção

Missing Authorization

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-22291

Produtos afetados

Enituretechnology Ltl Freight Quotes – Worldwide Express Edition