PT-2025-31948 · Unknown · Agenzia Impresa Eccobook

Simone Aiello

·

Published

2025-08-05

·

Updated

2025-08-05

·

CVE-2025-51628

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Agenzia Impresa Eccobook versions prior to 2.81.2
Description An Insecure Direct Object Reference (IDOR) vulnerability exists in the PdfHandler component. This allows unauthenticated attackers to read confidential documents. The vulnerability is triggered through the DocumentoId parameter.
Recommendations Update Agenzia Impresa Eccobook to a version prior to 2.81.2.

Exploit

Fix

IDOR

Weakness Enumeration

Related Identifiers

CVE-2025-51628

Affected Products

Agenzia Impresa Eccobook