CVE-2025-15025: IDOR in Yordam Informatics' Library Automation System
Authorization bypass through User-Controlled key vulnerability in Yordam Information Technology Consulting, Training and Electronic Systems Industry and Trade Inc. Library Automation System allows Exploitation of Trusted Identifiers.
This issue affects Library Automation System: from v.21.6 before v.22.1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15025?
CVE-2025-15025 is classified as a high severity vulnerability due to its potential for unauthorized access and exploitation of trusted identifiers.
How do I fix CVE-2025-15025?
To mitigate CVE-2025-15025, update the Yordam Informatics Library Automation System to version 22.1 or later.
What systems are affected by CVE-2025-15025?
CVE-2025-15025 affects versions 21.6 to 22.0 of Yordam Informatics' Library Automation System.
What type of vulnerability is CVE-2025-15025?
CVE-2025-15025 is an Insecure Direct Object Reference (IDOR) vulnerability allowing authorization bypass.
Who should be concerned about CVE-2025-15025?
Organizations using the affected versions of Yordam Informatics Library Automation System should be concerned about CVE-2025-15025.