PT-2025-31841 · Unknown · Givanz Vvveb
0Xhamy
·
Published
2025-08-04
·
Updated
2025-08-04
·
CVE-2025-8519
CVSS v2.0
3.3
Low
| Vector | AV:N/AC:L/Au:M/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
givanz Vvveb versions up to 1.0.5
Description
A problematic issue exists in givanz Vvveb that allows information disclosure. The issue is located in an unknown part of the file
/vadmin123/index.php?module=editor/editor within the Drag-and-Drop Editor component. The url argument can be manipulated to trigger the issue, and the attack can be initiated remotely. The exploit has been publicly disclosed.Recommendations
Upgrade to version 1.0.6.
Exploit
Fix
Improper Access Control
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Givanz Vvveb