CVE-2025-29504

Insecure Permission vulnerability in student-manage 1 allows a local attacker to escalate privileges via the Unsafe permission verification.
References
Link Resource
https://gitee.com/huang-yk/student-manage/issues/IBQ14H Exploit Issue Tracking Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:huang-yk:student-manage:-:*:*:*:*:*:*:*

History

15 Oct 2025, 16:49

Type Values Removed Values Added
First Time Huang-yk student-manage
Huang-yk
References () https://gitee.com/huang-yk/student-manage/issues/IBQ14H - () https://gitee.com/huang-yk/student-manage/issues/IBQ14H - Exploit, Issue Tracking, Vendor Advisory
CPE cpe:2.3:a:huang-yk:student-manage:-:*:*:*:*:*:*:*

04 Apr 2025, 16:15

Type Values Removed Values Added
CWE CWE-276
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
Summary
  • (es) La vulnerabilidad de permiso inseguro en student-manage 1 permite a un atacante local escalar privilegios a través de la verificación de permiso inseguro.

03 Apr 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-03 20:15

Updated : 2025-10-15 16:49


NVD link : CVE-2025-29504

Mitre link : CVE-2025-29504

CVE.ORG link : CVE-2025-29504


JSON object : View

Products Affected

huang-yk

  • student-manage
CWE
CWE-276

Incorrect Default Permissions