PT-2025-51822 · Gg Soft Software Services · Paperwork

Fatih Kirdar

+1

·

Published

2025-12-17

·

Updated

2025-12-22

·

CVE-2025-14101

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions GG Soft Software Services Inc. PaperWork versions prior to 6.0 GG Soft Software Services Inc. PaperWork versions 5.2.0.9427 through 5.2.0.9427
Description An authorization bypass exists due to user-controlled keys, allowing exploitation of trusted identifiers. The issue allows bypassing authorization controls.
Recommendations Upgrade to PaperWork version 6.0 or later.

Fix

IDOR

Weakness Enumeration

Related Identifiers

CVE-2025-14101

Affected Products

Paperwork