Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-30954 | The database for the web application is exposed without authentication, allowing an unauthenticated remote attacker to gain unauthorized access and potentially compromise it. |
| Link | Providers |
|---|---|
| https://certvde.com/de/advisories/VDE-2025-087 |
|
Wed, 24 Sep 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 24 Sep 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The database for the web application is exposed without authentication, allowing an unauthenticated remote attacker to gain unauthorized access and potentially compromise it. | |
| Title | Missing Authentication for Database Access in Web Application | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2025-09-24T13:07:30.391Z
Reserved: 2025-04-16T11:17:48.312Z
Link: CVE-2025-41715
Updated: 2025-09-24T13:07:27.062Z
Status : Deferred
Published: 2025-09-24T09:15:29.820
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-41715
No data.
OpenCVE Enrichment
No data.
EUVD