PT-2025-35323 · Unknown · Centurion Erp

Published

2025-08-29

·

Updated

2025-08-29

·

CVE-2025-58156

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Centurion ERP versions 1.12.0 through 1.20.999
Description Centurion ERP is an ERP system focused on ITSM and automation. An authenticated user can view authentication token details, including the hashed token, within the database.
Recommendations Remove any authentication token created by versions prior to 1.21.0. Webmasters should remove all authentication tokens from the database.

Exploit

Fix

Improper Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-58156
GHSA-X75J-CM35-5QCG

Affected Products

Centurion Erp