Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27987 | Direct request ('Forced Browsing') issue exists in iroha Board versions v0.10.12 and earlier. If this vulnerability is exploited, non-public contents may be viewed by an attacker who can log in to the affected product. |
Tue, 30 Sep 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Irohasoft
Irohasoft iroha Board |
|
| CPEs | cpe:2.3:a:irohasoft:iroha_board:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Irohasoft
Irohasoft iroha Board |
Thu, 26 Jun 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 26 Jun 2025 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Direct request ('Forced Browsing') issue exists in iroha Board versions v0.10.12 and earlier. If this vulnerability is exploited, non-public contents may be viewed by an attacker who can log in to the affected product. | |
| Weaknesses | CWE-425 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-06-26T13:19:09.569Z
Reserved: 2025-06-23T05:26:28.638Z
Link: CVE-2025-41404
Updated: 2025-06-26T13:19:05.752Z
Status : Analyzed
Published: 2025-06-26T06:15:23.497
Modified: 2025-09-30T20:28:30.040
Link: CVE-2025-41404
No data.
OpenCVE Enrichment
No data.
EUVD