Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-5316 | A Broken Authorization schema exists where any authenticated user could download IOA script and configuration files if the URL is known. |
Solution
Tenable has released Tenable Identity Exposure Version 3.77.9, which includes fixes to address these issues. The installation files can be obtained from the Tenable Downloads Portal: https://www.tenable.com/downloads/identity-exposure
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.tenable.com/security/tns-2025-01 |
|
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 25 Feb 2025 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Broken Authorization schema exists where any authenticated user could download IOA script and configuration files if the URL is known. | |
| Title | Broken Authorization Schema | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: tenable
Published:
Updated: 2025-02-26T15:43:26.749Z
Reserved: 2025-02-06T19:30:20.405Z
Link: CVE-2025-1091
Updated: 2025-02-26T14:47:00.073Z
Status : Received
Published: 2025-02-26T00:15:11.250
Modified: 2025-02-26T00:15:11.250
Link: CVE-2025-1091
No data.
OpenCVE Enrichment
No data.
EUVD