An issue was discovered in OPC cardsystems Webapp Aufwertung 2.1.0. The reference assigned to transactions can be reused. When completing a payment, the first or all transactions with the same reference are completed, depending on timing. This can be used to transfer more money onto employee cards than is paid.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-8261 | An issue was discovered in OPC cardsystems Webapp Aufwertung 2.1.0. The reference assigned to transactions can be reused. When completing a payment, the first or all transactions with the same reference are completed, depending on timing. This can be used to transfer more money onto employee cards than is paid. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 27 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-488 | |
| Metrics |
cvssV3_1
|
Wed, 26 Mar 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue was discovered in OPC cardsystems Webapp Aufwertung 2.1.0. The reference assigned to transactions can be reused. When completing a payment, the first or all transactions with the same reference are completed, depending on timing. This can be used to transfer more money onto employee cards than is paid. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-27T13:31:55.117Z
Reserved: 2025-03-16T00:00:00.000Z
Link: CVE-2025-30073
Updated: 2025-03-27T13:31:43.007Z
Status : Awaiting Analysis
Published: 2025-03-26T20:15:22.837
Modified: 2025-03-27T16:45:27.850
Link: CVE-2025-30073
No data.
OpenCVE Enrichment
No data.
EUVD