Metrics
Affected Vendors & Products
Thu, 09 Oct 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:jhumanj:opnform:*:*:*:*:*:*:*:* |
Thu, 09 Oct 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jhumanj
Jhumanj opnform |
|
| Vendors & Products |
Jhumanj
Jhumanj opnform |
Wed, 08 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 08 Oct 2025 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in JhumanJ OpnForm up to 1.9.3. Impacted is an unknown function of the file /edit. Executing manipulation can lead to improper access controls. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized. This patch is called b15e29021d326be127193a5dbbd528c4e37e6324. Applying a patch is advised to resolve this issue. | |
| Title | JhumanJ OpnForm edit access control | |
| Weaknesses | CWE-266 CWE-284 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-10-08T07:02:07.818Z
Updated: 2025-10-08T13:48:06.257Z
Reserved: 2025-10-07T13:17:24.556Z
Link: CVE-2025-11440
Updated: 2025-10-08T13:47:56.023Z
Status : Analyzed
Published: 2025-10-08T07:15:32.843
Modified: 2025-10-09T16:17:19.923
Link: CVE-2025-11440
No data.