PT-2025-15011 · Era404 · Era404 Stafflist

Anhchangmutrang

·

Published

2025-04-04

·

Updated

2025-04-04

·

CVE-2025-32255

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions ERA404 StaffList versions 3.2.6 and earlier
Description The issue allows exposure of sensitive system information to an unauthorized control sphere, enabling the retrieval of embedded sensitive data.
Recommendations For ERA404 StaffList versions 3.2.6 and earlier, update to a version that contains a fix for this issue, as no specific workaround or mitigation measures are provided.

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-32255

Affected Products

Era404 Stafflist