Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-31400 | SysReptor is a fully customizable pentest reporting platform. In versions from 2024.74 to before 2025.83, authenticated and unprivileged (non-admin) users can assign the is_project_admin permission to their own user. This allows users to read, modify and delete pentesting projects they are not members of and are therefore not supposed to access. This issue has been patched in version 2025.83. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 11 Dec 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:syslifters:sysreptor:*:*:*:*:*:*:*:* |
Mon, 29 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 29 Sep 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Syslifters
Syslifters sysreptor |
|
| Vendors & Products |
Syslifters
Syslifters sysreptor |
Sat, 27 Sep 2025 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SysReptor is a fully customizable pentest reporting platform. In versions from 2024.74 to before 2025.83, authenticated and unprivileged (non-admin) users can assign the is_project_admin permission to their own user. This allows users to read, modify and delete pentesting projects they are not members of and are therefore not supposed to access. This issue has been patched in version 2025.83. | |
| Title | SysReptor Susceptible to Privilege Escalation by Authenticated Users | |
| Weaknesses | CWE-266 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-09-29T14:10:54.427Z
Reserved: 2025-09-23T14:33:49.506Z
Link: CVE-2025-59945
Updated: 2025-09-29T14:10:46.795Z
Status : Analyzed
Published: 2025-09-27T01:15:44.073
Modified: 2025-12-11T21:18:59.340
Link: CVE-2025-59945
No data.
OpenCVE Enrichment
Updated: 2025-09-29T09:29:54Z
EUVD