An API endpoint that should be limited to web application administrators is hidden from, but accessible by, lower-level read only web application users. The endpoint can be used to download logs from the appliance configuration, exposing sensitive information.
CVSS
No CVSS.
References
Configurations
No configuration.
History
29 Jul 2025, 00:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-29 00:15
Updated : 2025-07-29 14:15
NVD link : CVE-2025-54768
Mitre link : CVE-2025-54768
JSON object : View
Products Affected
No product.
CWE
No CWE.