CVE-2025-25450
Severity CVSS v4.0:
Pending analysis
Type:
CWE-287
Authentication Issues
Publication date:
06/03/2025
Last modified:
07/03/2025
Description
An issue in TAAGSOLUTIONS GmbH MyTaag v.2024-11-24 and before allows a remote attacker to escalate privileges via the deactivation of the activated second factor to the /session endpoint
Impact
Base Score 3.x
5.10
Severity 3.x
MEDIUM