PT-2025-5427 · Haptiq · Picu – Online Photo Proofing Gallery

Thiennv

·

Published

2025-01-27

·

Updated

2025-01-27

·

CVE-2025-24590

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions picu – Online Photo Proofing Gallery versions prior to 2.4.0
Description The issue is related to a lack of authorization in Haptiq picu – Online Photo Proofing Gallery, which allows the exploitation of incorrectly configured access control security levels.
Recommendations For versions prior to 2.4.0, update to version 2.4.0 or later to resolve the issue.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-24590

Affected Products

Picu – Online Photo Proofing Gallery