CVE-2025-8886
⚪ Do wiadomości
Błąd autoryzacji w Aybs Interaktif umożliwia nadużycie uprawnień i obejście uwierzytelnienia.
CVSS
6.7
EPSS
0.2%
Exploit
none
Vendor
Opis źródłowy (NVD)
Incorrect Permission Assignment for Critical Resource, Exposure of Sensitive Information to an Unauthorized Actor, Missing Authorization, Incorrect Authorization vulnerability in Usta Information Systems Inc. Aybs Interaktif allows Privilege Abuse, Authentication Bypass. This issue affects Aybs Interaktif: from 2024 through 28082025.
auth-bypass
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 6.7 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.2% |
| Opublikowano (NVD) | 2025-10-10 14:15:43 UTC |
| Ostatnia modyfikacja (NVD) | 2026-09-30 23:10:00 UTC |