CVE-2025-0783

MEDIUM

Pankajindevops <20241113 - Info Disclosure

Title source: llm
STIX 2.1

Description

A vulnerability, which was classified as problematic, was found in pankajindevops scale up to 20241113. This affects an unknown part of the component API Endpoint. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. This product does not use versioning. This is why information about affected and unaffected releases are unavailable.

References (5)

Core 5
Core References
Permissions Required, VDB Entry vdb-entry
https://vuldb.com/?id.293907
Permissions Required, VDB Entry signature permissions-required
https://vuldb.com/?ctiid.293907
Permissions Required, VDB Entry third-party-advisory
https://vuldb.com/?submit.480350

Scores

CVSS v3 6.3
EPSS 0.0029
EPSS Percentile 20.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-266 CWE-284
Status published
Products (1)
pankajindevops/scale 20241113
Published Jan 28, 2025
Tracked Since Feb 18, 2026