CVE-2025-3013
Severity CVSS v4.0:
HIGH
Type:
CWE-285
Improper Authorization
Publication date:
31/03/2025
Last modified:
01/04/2025
Description
Insecure Direct Object References (IDOR) in access control in Customer Portal before 2.1.4 on NightWolf Penetration Testing allows an attacker to access via manipulating request parameters or object references.
Impact
Base Score 4.0
8.30
Severity 4.0
HIGH



