CVE-2025-2395

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/03/2025
Last modified:
18/11/2025

Description

The U-Office Force from e-Excellence has an Improper Authentication vulnerability, allowing unauthenticated remote attackers to use a particular API and alter cookies to log in as an administrator.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:edetw:u-office_force:*:*:*:*:*:*:*:* 28.0 (excluding)