A Broken Authorization schema exists where any authenticated user could download IOA script and configuration files if the URL is known.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.tenable.com/security/tns-2025-01 |
|
History
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 25 Feb 2025 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Broken Authorization schema exists where any authenticated user could download IOA script and configuration files if the URL is known. | |
| Title | Broken Authorization Schema | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: tenable
Published: 2025-02-25T23:27:44.401Z
Updated: 2025-02-26T15:43:26.749Z
Reserved: 2025-02-06T19:30:20.405Z
Link: CVE-2025-1091
Updated: 2025-02-26T14:47:00.073Z
Status : Received
Published: 2025-02-26T00:15:11.250
Modified: 2025-02-26T00:15:11.250
Link: CVE-2025-1091
No data.