Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-23291 | OPEXUS FOIAXpress Public Access Link (PAL) version v11.1.0 allows attackers to bypass account-lockout and CAPTCHA protections. Unauthenticated remote attackers can more easily brute force passwords. |
Fri, 23 Jan 2026 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Opexustech
Opexustech foiaxpress Public Access Link |
|
| CPEs | cpe:2.3:a:opexustech:foiaxpress_public_access_link:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Opexus
Opexus foiaxpress Public Access Link |
Opexustech
Opexustech foiaxpress Public Access Link |
Fri, 12 Sep 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Opexus
Opexus foiaxpress Public Access Link |
|
| CPEs | cpe:2.3:a:opexus:foiaxpress_public_access_link:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Opexus
Opexus foiaxpress Public Access Link |
Thu, 07 Aug 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
ssvc
|
Thu, 31 Jul 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 31 Jul 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OPEXUS FOIAXpress Public Access Link (PAL) version v11.1.0 allows attackers to bypass account-lockout and CAPTCHA protections. Unauthenticated remote attackers can more easily brute force passwords. | |
| Title | OPEXUS FOIAXpress Public Access Link (PAL) account-lockout and CAPTCHA protection bypass | |
| Weaknesses | CWE-307 CWE-602 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: cisa-cg
Published:
Updated: 2025-08-07T18:49:33.918Z
Reserved: 2025-07-30T14:04:24.410Z
Link: CVE-2025-54833
Updated: 2025-07-31T17:42:56.716Z
Status : Analyzed
Published: 2025-07-31T18:15:43.067
Modified: 2026-01-23T02:38:39.697
Link: CVE-2025-54833
No data.
OpenCVE Enrichment
No data.
EUVD