Metrics
Affected Vendors & Products
Fri, 12 Sep 2025 09:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Papermerge
Papermerge dms Papermerge papermerge |
|
Vendors & Products |
Papermerge
Papermerge dms Papermerge papermerge |
Wed, 10 Sep 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
ssvc
|
Wed, 10 Sep 2025 18:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A security flaw has been discovered in Papermerge DMS up to 3.5.3. This issue affects some unknown processing of the component Authorization Token Handler. Performing manipulation results in improper authorization. The attack can be initiated remotely. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Papermerge DMS Authorization Token improper authorization | |
Weaknesses | CWE-266 CWE-285 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-10T18:32:06.527Z
Updated: 2025-09-10T18:49:58.764Z
Reserved: 2025-09-10T10:09:09.250Z
Link: CVE-2025-10209

Updated: 2025-09-10T18:49:50.275Z

Status : Awaiting Analysis
Published: 2025-09-10T19:15:40.493
Modified: 2025-09-11T17:14:10.147
Link: CVE-2025-10209

No data.