PT-2025-38949 · Brandexponents · Oshine Core

Rafie Muhammad

·

Published

2025-09-22

·

Updated

2025-09-23

·

CVE-2025-58660

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions brandexponents Oshine Core versions through 1.5.5
Description An authorization issue exists in brandexponents Oshine Core due to incorrectly configured access control security levels. This allows for exploitation of the system.
Recommendations Update Oshine Core to a version later than 1.5.5.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-58660

Affected Products

Oshine Core