Metrics
Affected Vendors & Products
Solution
Innovación y Cualificación has released a new version that fixes the vulnerabilities detected in the affected plugins. It has been implemented in all installations of the affected software, and the process will be completed in December 2024.
Workaround
No workaround given by the vendor.
Mon, 17 Mar 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 17 Mar 2025 10:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Broken access control vulnerability in the Innovación y Cualificación local administration plugin ajax.php. This vulnerability allows an attacker to obtain sensitive information about other users such as id, name, login and email. | |
Title | Broken access control vulnerability in the Innovación y Cualificación local administration plugin ajax.php | |
Weaknesses | CWE-863 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-03-17T12:15:05.683Z
Reserved: 2025-03-11T09:52:10.472Z
Link: CVE-2025-2202

Updated: 2025-03-17T12:14:44.223Z

Status : Received
Published: 2025-03-17T11:15:37.970
Modified: 2025-03-17T11:15:37.970
Link: CVE-2025-2202

No data.

No data.