CVE-2025-4430

Unauthorized access to "/api/Token/gettoken" endpoint in EZD RP allows file manipulation.This issue affects EZD RP in versions before 20.19 (published on 22nd August 2024).
CVSS

No CVSS.

Configurations

No configuration.

History

16 May 2025, 14:43

Type Values Removed Values Added
Summary
  • (es) El acceso no autorizado al endpoint "/api/Token/gettoken" en EZD RP permite la manipulación de archivos. Este problema afecta a EZD RP en versiones anteriores a 20.19 (publicada el 22 de agosto de 2024).

14 May 2025, 11:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-14 11:16

Updated : 2025-05-16 14:43


NVD link : CVE-2025-4430

Mitre link : CVE-2025-4430

CVE.ORG link : CVE-2025-4430


JSON object : View

Products Affected

No product.

CWE
CWE-862

Missing Authorization