CVE-2025-2304

CRITICAL

Rubygems Camaleon Cms < 2.9.1 - Privilege Escalation

Title source: rule

Description

A Privilege Escalation through a Mass Assignment exists in Camaleon CMS When a user wishes to change his password, the 'updated_ajax' method of the UsersController is called. The vulnerability stems from the use of the dangerous permit! method, which allows all parameters to pass through without any filtering.

Exploits (19)

nomisec WORKING POC 14 stars
by predyy · poc
https://github.com/predyy/CVE-2025-2304
github WORKING POC 10 stars
by XiaomingX · pythonpoc
https://github.com/XiaomingX/data-cve-poc-py-v1/tree/main/2025/CVE-2025-2304
nomisec WORKING POC 8 stars
by d3vn0mi · poc
https://github.com/d3vn0mi/CVE-2025-2304-POC
nomisec WORKING POC 8 stars
by whiteov3rflow · poc
https://github.com/whiteov3rflow/CVE-2025-2304-POC
nomisec WORKING POC 6 stars
by d3vn0mi · poc
https://github.com/d3vn0mi/cve-2025-2304-poc
nomisec WORKING POC 5 stars
by Alien0ne · poc
https://github.com/Alien0ne/CVE-2025-2304
github WORKING POC 2 stars
by adminlove520 · pythonpoc
https://github.com/adminlove520/CVE-Poc_All_in_One/tree/main/2025/CVE-2025-2304
nomisec WORKING POC 1 stars
by CsuriBird · poc
https://github.com/CsuriBird/CVE-2025-2304
nomisec WORKING POC 1 stars
by AzureADTrent · poc
https://github.com/AzureADTrent/CVE-2025-2304_POC
nomisec SUSPICIOUS
by mattiapertusati · poc
https://github.com/mattiapertusati/htb-facts
nomisec WORKING POC
by estebanzarate · poc
https://github.com/estebanzarate/CVE-2025-2304-Camaleon-CMS-Mass-Assignment-Privilege-Escalation-PoC
nomisec WORKING POC
by MAEN1-prog · poc
https://github.com/MAEN1-prog/CVE-2025-2304
nomisec SUSPICIOUS
by MAEN1-prog · poc
https://github.com/MAEN1-prog/maen1-prog.github.io
nomisec WORKING POC
by sparrowhawk1113 · poc
https://github.com/sparrowhawk1113/Exploit-for-CVE-2025-2304
nomisec WORKING POC
by PwnManjaro · poc
https://github.com/PwnManjaro/CVE-2025-2304
nomisec WORKING POC
by 7acini · poc
https://github.com/7acini/CVE-2025-2304-CamaleonCMS-PoC
nomisec WORKING POC
by lil0xplorer · poc
https://github.com/lil0xplorer/CVE-2025-2304-PoC
nomisec WORKING POC
by the8frust · poc
https://github.com/the8frust/CVE-2025-2304
nomisec WRITEUP
by innocentx0 · poc
https://github.com/innocentx0/CVE-2025-2304-POC

Scores

CVSS v4 9.4
EPSS 0.0018
EPSS Percentile 39.8%
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H

Details

CWE
CWE-915
Status published
Products (2)
owen2345/camaleon-cms < 2.9.1
rubygems/camaleon_cms 0 - 2.9.1RubyGems
Published Mar 14, 2025
Tracked Since Feb 18, 2026