A missing authorization vulnerability in the retrieve teacher Information function of Wisdom Master Pro versions 5.0 through 5.2 allows remote attackers to obtain partial user data by accessing the API functionality.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://zuso.ai/advisory/za-2025-01 |
|
History
Thu, 17 Apr 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 17 Apr 2025 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A missing authorization vulnerability in the retrieve teacher Information function of Wisdom Master Pro versions 5.0 through 5.2 allows remote attackers to obtain partial user data by accessing the API functionality. | |
| Title | Wisdom Master Pro - Missing Authorization | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: ZUSO ART
Published: 2025-04-17T02:01:45.543Z
Updated: 2025-04-17T19:14:07.278Z
Reserved: 2025-03-28T07:11:21.679Z
Link: CVE-2025-31338
Updated: 2025-04-17T19:14:00.760Z
Status : Awaiting Analysis
Published: 2025-04-17T03:15:15.767
Modified: 2025-04-17T20:21:48.243
Link: CVE-2025-31338
No data.