PT-2025-54344 · Totalsoft · Totalsoft Portfolio Gallery

Nabil Irawan

·

Published

2025-12-31

·

Updated

2026-01-01

·

CVE-2025-62098

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Totalsoft Portfolio Gallery versions through 1.4.8
Description An authorization issue exists in Totalsoft Portfolio Gallery due to incorrectly configured access control security levels. This allows for potential exploitation of the application.
Recommendations Update Totalsoft Portfolio Gallery to a version later than 1.4.8.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-62098

Affected Products

Totalsoft Portfolio Gallery