First published: Mon Mar 03 2025(Updated: )
Missing Authorization vulnerability in radicaldesigns radSLIDE allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects radSLIDE: from n/a through 2.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
radSLIDE | <=2.1 | |
radSLIDE | <=2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-23440 is classified as a missing authorization vulnerability, which can lead to unauthorized access to sensitive data.
To address CVE-2025-23440, ensure that access control security levels are correctly configured in radicaldesigns radSLIDE.
CVE-2025-23440 affects radicaldesigns radSLIDE versions up to and including 2.1.
Yes, CVE-2025-23440 can be exploited remotely if the access controls are misconfigured.
Currently, there are no official patches announced for CVE-2025-23440; it's advised to manually configure access control settings.