Description
Incorrect access control in the component /rest/staffResource/findAllUsersAcrossOrg of Serosoft Solutions Pvt Ltd Academia Student Information System (SIS) EagleR v1.0.118 allows create and modify user accounts, including an Administrator account.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-5836 | Incorrect access control in the component /rest/staffResource/findAllUsersAcrossOrg of Serosoft Solutions Pvt Ltd Academia Student Information System (SIS) EagleR v1.0.118 allows create and modify user accounts, including an Administrator account. |
References
History
Fri, 27 Jun 2025 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Serosoft
Serosoft academia Student Information System |
|
| CPEs | cpe:2.3:a:serosoft:academia_student_information_system:eagler-1.0.118:*:*:*:*:*:*:* | |
| Vendors & Products |
Serosoft
Serosoft academia Student Information System |
Wed, 05 Mar 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-862 | |
| Metrics |
cvssV3_1
|
Mon, 03 Mar 2025 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Incorrect access control in the component /rest/staffResource/findAllUsersAcrossOrg of Serosoft Solutions Pvt Ltd Academia Student Information System (SIS) EagleR v1.0.118 allows create and modify user accounts, including an Administrator account. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-05T17:01:09.719Z
Reserved: 2025-03-03T00:00:00.000Z
Link: CVE-2025-27583
Updated: 2025-03-05T17:00:58.064Z
Status : Analyzed
Published: 2025-03-03T01:15:12.030
Modified: 2025-06-27T13:43:45.653
Link: CVE-2025-27583
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD