Users who were required to change their password could still access system information before changing their password
Metrics
Affected Vendors & Products
References
History
Wed, 01 Oct 2025 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 |
Wed, 01 Oct 2025 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-521 |
Mon, 12 May 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 12 May 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Users who were required to change their password could still access system information before changing their password | |
| Title | Improper Access Control | |
| Weaknesses | CWE-284 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: SEL
Published: 2025-05-12T16:10:09.527Z
Updated: 2025-10-01T22:23:33.103Z
Reserved: 2025-04-28T21:27:38.848Z
Link: CVE-2025-46742
Updated: 2025-05-12T17:53:35.825Z
Status : Awaiting Analysis
Published: 2025-05-12T17:15:47.757
Modified: 2025-10-01T23:15:29.957
Link: CVE-2025-46742
No data.