Description
The database for the web application is exposed without authentication, allowing an unauthenticated remote attacker to gain unauthorized access and potentially compromise it.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-30954 | The database for the web application is exposed without authentication, allowing an unauthenticated remote attacker to gain unauthorized access and potentially compromise it. |
References
| Link | Providers |
|---|---|
| https://certvde.com/de/advisories/VDE-2025-087 |
|
History
Wed, 24 Sep 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 24 Sep 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The database for the web application is exposed without authentication, allowing an unauthenticated remote attacker to gain unauthorized access and potentially compromise it. | |
| Title | Missing Authentication for Database Access in Web Application | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2025-09-24T13:07:30.391Z
Reserved: 2025-04-16T11:17:48.312Z
Link: CVE-2025-41715
Updated: 2025-09-24T13:07:27.062Z
Status : Deferred
Published: 2025-09-24T09:15:29.820
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-41715
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD