Description
Unauthorized access to "/api/Token/gettoken" endpoint in EZD RP allows file manipulation.This issue affects EZD RP in versions before 20.19 (published on 22nd August 2024).
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-14870 | Unauthorized access to "/api/Token/gettoken" endpoint in EZD RP allows file manipulation.This issue affects EZD RP in versions before 20.19 (published on 22nd August 2024). |
References
History
Wed, 14 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 14 May 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unauthorized access to "/api/Token/gettoken" endpoint in EZD RP allows file manipulation.This issue affects EZD RP in versions before 20.19 (published on 22nd August 2024). | |
| Title | Unauthorized file manipulation in EZD RP | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: CERT-PL
Published:
Updated: 2025-05-14T13:35:34.712Z
Reserved: 2025-05-08T12:34:39.711Z
Link: CVE-2025-4430
Updated: 2025-05-14T13:35:30.441Z
Status : Deferred
Published: 2025-05-14T11:16:36.480
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-4430
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD