PT-2025-14803 · Unknown · Student-Manage

Published

2025-04-03

·

Updated

2025-10-15

·

CVE-2025-29504

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions student-manage version 1
Description The issue allows a local attacker to escalate privileges due to insecure permission verification. This is achieved through the unsafe permission verification process.
Recommendations For version 1, consider restricting access to sensitive areas of the system to minimize the risk of privilege escalation until a proper fix is applied. As a temporary workaround, review and adjust the permission verification process to ensure it is secure.

Fix

LPE

Incorrect Default Permissions

Weakness Enumeration

Related Identifiers

CVE-2025-29504

Affected Products

Student-Manage