First published: Mon Mar 03 2025(Updated: )
Incorrect access control in the component /rest/staffResource/update of Serosoft Solutions Pvt Ltd Academia Student Information System (SIS) EagleR v1.0.118 allows create and modify user accounts, including an Administrator account.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Serosoft Solutions Academia Student Information System EagleR |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-25950 has a medium severity rating due to improper access control vulnerabilities that can lead to unauthorized account modifications.
CVE-2025-25950 affects users of Serosoft Solutions Pvt Ltd Academia Student Information System EagleR v1.0.118.
To fix CVE-2025-25950, ensure proper access controls are implemented in the affected component to restrict unauthorized access.
Attackers exploiting CVE-2025-25950 can create and modify user accounts, potentially elevating privileges to that of an Administrator.
Yes, CVE-2025-25950 is a known vulnerability that has been documented for awareness and resolution.