Metrics
Affected Vendors & Products
Fri, 21 Mar 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 21 Mar 2025 13:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in code-projects Human Resource Management System 1.0.1 and classified as critical. This issue affects the function Index of the file \handler\Account.go. The manipulation of the argument user_cookie leads to improper authorization. The exploit has been disclosed to the public and may be used. | |
Title | code-projects Human Resource Management System Account.go Index improper authorization | |
Weaknesses | CWE-266 CWE-285 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-03-21T12:31:04.867Z
Updated: 2025-03-21T17:23:43.618Z
Reserved: 2025-03-21T06:38:26.142Z
Link: CVE-2025-2589

Updated: 2025-03-21T17:23:36.584Z

Status : Undergoing Analysis
Published: 2025-03-21T13:15:34.830
Modified: 2025-03-21T18:15:39.390
Link: CVE-2025-2589

No data.