CVE-2025-0352

HIGH

Rapid Response Monitoring My Security Account App - Info Disclosure

Title source: llm
STIX 2.1

Description

Rapid Response Monitoring My Security Account App utilizes an API that could be exploited by an attacker to modify request data, potentially causing the API to return information about other users.

References (2)

Core 2
Core References
Third Party Advisory, US Government Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-25-051-05

Scores

CVSS v3 7.5
EPSS 0.0010
EPSS Percentile 27.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-639
Status published
Products (1)
Rapid Response Monitoring/My Security Account App API < 7/29/24
Published Feb 20, 2025
Tracked Since Feb 18, 2026