Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
The vulnerability has been fixed by the Sanoma team in April 2025.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27973 | Insecure Direct Object Reference (IDOR) vulnerability in Clickedu. This vulnerability could allow an attacker to retrieve information about student report cards. |
Tue, 27 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 26 May 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insecure Direct Object Reference (IDOR) vulnerability in Clickedu. This vulnerability could allow an attacker to retrieve information about student report cards. | |
| Title | Insecure Direct Object Reference (IDOR) in Clickedu | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-05-27T14:08:43.120Z
Reserved: 2025-04-16T08:38:12.621Z
Link: CVE-2025-40650
Updated: 2025-05-27T14:08:15.481Z
Status : Deferred
Published: 2025-05-26T13:15:19.497
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-40650
No data.
OpenCVE Enrichment
No data.
EUVD