CVE-2019-25068

MEDIUM

Axios Italia Axios RE <1.7.0-7.0.0 - Privilege Escalation

Title source: llm
STIX 2.1

Description

A vulnerability classified as critical was found in Axios Italia Axios RE 1.7.0/7.0.0. This vulnerability affects unknown code of the file REDefault.aspx of the component Connection Handler. The manipulation of the argument DBIDX leads to privilege escalation. The attack can be initiated remotely.

References (1)

Core 1
Core References
Third Party Advisory x_refsource_misc
https://vuldb.com/?id.139528

Scores

CVSS v3 6.3
EPSS 0.0052
EPSS Percentile 40.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-269
Status published
Products (2)
axiositalia/registro_elettronico 1.7.0
axiositalia/registro_elettronico 7.0.0
Published Jun 09, 2022
Tracked Since Feb 18, 2026