CVE-2025-51682: Critical severity mJobtime mJobtime vulnerability
Published Dec 1, 2025
·Updated
mJobtime 15.7.2 handles authorization on the client side, which allows an attacker to modify the client-side code and gain access to administrative features. Additionally, they can craft requests based on the client-side code to call these administrative functions directly.
Affected Software
2 affected components
mJobtime mJobtime
mJobtime mJobtime=15.7.2
Event History
Dec 1, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-51682?
CVE-2025-51682 is considered a high-severity vulnerability due to its potential to grant unauthorized administrative access.
2
How do I fix CVE-2025-51682?
To fix CVE-2025-51682, ensure that authorization checks are handled on the server side rather than the client side.
3
What software versions are affected by CVE-2025-51682?
CVE-2025-51682 affects mJobtime version 15.7.2.
4
What types of attacks can exploit CVE-2025-51682?
CVE-2025-51682 can be exploited by attackers modifying client-side code to access and execute administrative features.
5
Who is the vendor for CVE-2025-51682?
The vendor for CVE-2025-51682 is mJobtime.