PT-2025-7806 · Benner · Benner Modernanet

Y4G0

+1

·

Published

2025-02-25

·

Updated

2025-02-25

·

CVE-2025-1643

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Benner ModernaNet versions up to 1.1.0
Description A vulnerability was found in the processing of the file /DadosPessoais/SG AlterarSenha, leading to cross-site request forgery. The attack may be initiated remotely. Upgrading to version 1.1.1 is able to address this issue.
Recommendations For Benner ModernaNet versions up to 1.1.0, upgrade to version 1.1.1 to address the issue. As a temporary workaround, consider restricting access to the /DadosPessoais/SG AlterarSenha file until the upgrade is applied.

Exploit

Fix

Missing Authorization

CSRF

Weakness Enumeration

Related Identifiers

CVE-2025-1643

Affected Products

Benner Modernanet