CVE-2025-15023: Improper Access Control in Yordam Informatics' Library Automation System
Incorrect Authorization vulnerability in Yordam Information Technology Consulting, Training and Electronic Systems Industry and Trade Inc. Library Automation System allows Exploiting Incorrectly Configured Access Control Security Levels.
This issue affects Library Automation System: from v.19.5 before v.22.1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15023?
The severity of CVE-2025-15023 is classified as critical due to its exploitation potential for unauthorized access.
How do I fix CVE-2025-15023?
To fix CVE-2025-15023, ensure that all access control configurations within the Yordam Informatics Library Automation System are correctly set and enforced.
Which versions of the Yordam Informatics Library Automation System are affected by CVE-2025-15023?
CVE-2025-15023 affects versions of the Yordam Informatics Library Automation System from 19.5 to 22.1.
What are the implications of CVE-2025-15023?
The implications of CVE-2025-15023 include potential unauthorized access to sensitive library data and resources.
Is there any additional guidance for mitigating CVE-2025-15023?
Additional guidance for mitigating CVE-2025-15023 includes reviewing user roles and access permissions regularly to prevent incorrect authorization.