CVE-2025-8886

⚪ Do wiadomości

Błąd autoryzacji w Aybs Interaktif umożliwia nadużycie uprawnień i obejście uwierzytelnienia.

CVSS
6.7
EPSS
0.2%
Exploit
none
Vendor
Opis źródłowy (NVD)

Incorrect Permission Assignment for Critical Resource, Exposure of Sensitive Information to an Unauthorized Actor, Missing Authorization, Incorrect Authorization vulnerability in Usta Information Systems Inc. Aybs Interaktif allows Privilege Abuse, Authentication Bypass. This issue affects Aybs Interaktif: from 2024 through 28082025.

auth-bypass Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS6.7
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.2%
Opublikowano (NVD)2025-10-10 14:15:43 UTC
Ostatnia modyfikacja (NVD)2026-09-30 23:10:00 UTC
Referencje