Metrics
Affected Vendors & Products
Mon, 12 May 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 11 May 2025 23:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in ContiNew Admin up to 3.6.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /dev-api/system/user/1/password. The manipulation leads to unverified password change. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | ContiNew Admin password unverified password change | |
Weaknesses | CWE-620 CWE-640 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-11T23:31:04.342Z
Updated: 2025-05-12T15:05:41.241Z
Reserved: 2025-05-10T15:45:14.197Z
Link: CVE-2025-4552

Updated: 2025-05-12T15:05:37.890Z

Status : Awaiting Analysis
Published: 2025-05-12T00:15:16.450
Modified: 2025-05-12T17:32:32.760
Link: CVE-2025-4552

No data.