PT-2025-19785 · Unknown · Production Ssm

Racerz-Fighting

·

Published

2025-05-05

·

Updated

2025-05-07

·

CVE-2025-45617

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions production ssm version v0.0.1-SNAPSHOT
Description The issue is related to incorrect access control in the component /user/list, which allows attackers to access sensitive information via a crafted payload.
Recommendations For production ssm version v0.0.1-SNAPSHOT, consider restricting access to the /user/list component until a proper fix is applied. As a temporary workaround, review and enforce strict access controls to sensitive information.

Exploit

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2026-02096
CVE-2025-45617

Affected Products

Production Ssm