Metrics
Affected Vendors & Products
Mon, 14 Jul 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
Sun, 13 Jul 2025 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in Dromara Northstar up to 7.3.5. It has been rated as critical. Affected by this issue is the function preHandle of the file northstar-main/src/main/java/org/dromara/northstar/web/interceptor/AuthorizationInterceptor.java of the component Path Handler. The manipulation of the argument Request leads to improper access controls. The attack may be launched remotely. Upgrading to version 7.3.6 is able to address this issue. The patch is identified as 8d521bbf531de59b09b8629a9cbf667870ad2541. It is recommended to upgrade the affected component. | |
| Title | Dromara Northstar Path AuthorizationInterceptor.java preHandle access control | |
| Weaknesses | CWE-266 CWE-284 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-07-13T23:32:15.706Z
Updated: 2025-07-14T13:40:54.187Z
Reserved: 2025-07-12T17:17:06.073Z
Link: CVE-2025-7552
Updated: 2025-07-14T13:40:41.216Z
Status : Awaiting Analysis
Published: 2025-07-14T00:15:25.093
Modified: 2025-07-15T13:14:24.053
Link: CVE-2025-7552
No data.