Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-6552 | Unifiedtransform 2.0 is vulnerable to Incorrect Access Control, which allows teachers to take attendance of fellow teachers. This affected endpoint is /courses/teacher/index?teacher_id=2&semester_id=1. |
Tue, 24 Jun 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Changeweb
Changeweb unifiedtransform |
|
| CPEs | cpe:2.3:a:changeweb:unifiedtransform:2.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Changeweb
Changeweb unifiedtransform |
Tue, 24 Jun 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | ||
| Vendors & Products |
Changeweb
Changeweb unifiedtransform |
Tue, 24 Jun 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Changeweb
Changeweb unifiedtransform |
|
| CPEs | cpe:2.3:a:changeweb:unifiedtransform:2.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Changeweb
Changeweb unifiedtransform |
Mon, 17 Mar 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 | |
| Metrics |
cvssV3_1
|
Mon, 17 Mar 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unifiedtransform 2.0 is vulnerable to Incorrect Access Control, which allows teachers to take attendance of fellow teachers. This affected endpoint is /courses/teacher/index?teacher_id=2&semester_id=1. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-17T18:00:30.075Z
Reserved: 2025-02-07T00:00:00.000Z
Link: CVE-2025-25621
Updated: 2025-03-17T15:40:04.085Z
Status : Analyzed
Published: 2025-03-17T15:15:44.173
Modified: 2025-06-24T14:59:56.510
Link: CVE-2025-25621
No data.
OpenCVE Enrichment
No data.
EUVD