Authentication bypass by spoofing issue exists in FileMegane versions above 1.0.0.0 prior to 3.4.0.0, which may lead to user impersonation. If exploited, restricted file contents may be accessed.
Metrics
Affected Vendors & Products
References
History
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 18 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 18 Feb 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Authentication bypass by spoofing issue exists in FileMegane versions above 1.0.0.0 prior to 3.4.0.0, which may lead to user impersonation. If exploited, restricted file contents may be accessed. | |
| Weaknesses | CWE-290 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published: 2025-02-17T23:56:51.567Z
Updated: 2025-02-18T15:42:32.539Z
Reserved: 2025-02-03T08:50:27.677Z
Link: CVE-2025-25055
Updated: 2025-02-18T15:42:20.588Z
Status : Received
Published: 2025-02-18T00:15:21.277
Modified: 2025-02-18T00:15:21.277
Link: CVE-2025-25055
No data.