Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update to version 2.3.2 build 0115 or later and install patch KB202504001
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-22057 | The EAI developed by Digiwin has a Privilege Escalation vulnerability, allowing remote attackers with regular privileges to elevate their privileges to administrator level via a specific API. |
Mon, 21 Jul 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 21 Jul 2025 07:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The EAI developed by Digiwin has a Privilege Escalation vulnerability, allowing remote attackers with regular privileges to elevate their privileges to administrator level via a specific API. | |
| Title | Digiwin|EAI - Privilege Escalation | |
| Weaknesses | CWE-648 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-07-21T15:27:50.375Z
Reserved: 2025-07-08T02:24:27.140Z
Link: CVE-2025-7344
Updated: 2025-07-21T15:27:26.507Z
Status : Deferred
Published: 2025-07-21T07:15:24.417
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-7344
No data.
OpenCVE Enrichment
No data.
EUVD