PT-2025-51822 · Gg Soft Software Services · Paperwork
Fatih Kirdar
+1
·
Published
2025-12-17
·
Updated
2025-12-22
·
CVE-2025-14101
CVSS v3.1
7.1
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
GG Soft Software Services Inc. PaperWork versions prior to 6.0
GG Soft Software Services Inc. PaperWork versions 5.2.0.9427 through 5.2.0.9427
Description
An authorization bypass exists due to user-controlled keys, allowing exploitation of trusted identifiers. The issue allows bypassing authorization controls.
Recommendations
Upgrade to PaperWork version 6.0 or later.
Fix
IDOR
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Paperwork