CVE-2025-1642

A vulnerability was found in Benner ModernaNet up to 1.1.0. It has been declared as critical. This vulnerability affects unknown code of the file /AGE0000700/GetImageMedico?fooId=1. The manipulation of the argument fooId leads to improper control of resource identifiers. The attack can be initiated remotely. Upgrading to version 1.1.1 is able to address this issue. It is recommended to upgrade the affected component.
References
Link Resource
https://github.com/yago3008/cves Exploit Third Party Advisory
https://vuldb.com/?ctiid.296692 Permissions Required VDB Entry
https://vuldb.com/?id.296692 VDB Entry
https://vuldb.com/?submit.499877 Exploit Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:modernasistemas:modernanet:*:*:*:*:*:*:*:*

History

17 Jun 2026, 08:39

Type Values Removed Values Added
CPE cpe:2.3:a:modernasistemas:modernanet:*:*:*:*:*:*:*:*
Summary
  • (es) Se ha detectado una vulnerabilidad en Benner ModernaNet hasta la versión 1.1.0. Se ha declarado como crítica. Esta vulnerabilidad afecta al código desconocido del archivo /AGE0000700/GetImageMedico?fooId=1. La manipulación del argumento fooId conduce a un control inadecuado de los identificadores de recursos. El ataque puede iniciarse de forma remota. La actualización a la versión 1.1.1 puede solucionar este problema. Se recomienda actualizar el componente afectado.
References () https://github.com/yago3008/cves - () https://github.com/yago3008/cves - Exploit, Third Party Advisory
References () https://vuldb.com/?ctiid.296692 - () https://vuldb.com/?ctiid.296692 - Permissions Required, VDB Entry
References () https://vuldb.com/?id.296692 - () https://vuldb.com/?id.296692 - VDB Entry
References () https://vuldb.com/?submit.499877 - () https://vuldb.com/?submit.499877 - Exploit, Third Party Advisory, VDB Entry
First Time Modernasistemas
Modernasistemas modernanet
CWE NVD-CWE-Other

25 Feb 2025, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-25 01:15

Updated : 2026-06-17 08:39


NVD link : CVE-2025-1642

Mitre link : CVE-2025-1642

CVE.ORG link : CVE-2025-1642


JSON object : View

Products Affected

modernasistemas

  • modernanet
CWE
CWE-99

Improper Control of Resource Identifiers ('Resource Injection')

NVD-CWE-Other