CVE-2025-2304
CRITICALRubygems Camaleon Cms < 2.9.1 - Privilege Escalation
Title source: ruleDescription
A Privilege Escalation through a Mass Assignment exists in Camaleon CMS When a user wishes to change his password, the 'updated_ajax' method of the UsersController is called. The vulnerability stems from the use of the dangerous permit! method, which allows all parameters to pass through without any filtering.
Exploits (19)
github
WORKING POC
10 stars
by XiaomingX · pythonpoc
https://github.com/XiaomingX/data-cve-poc-py-v1/tree/main/2025/CVE-2025-2304
nomisec
WORKING POC
8 stars
by whiteov3rflow · poc
https://github.com/whiteov3rflow/CVE-2025-2304-POC
github
WORKING POC
2 stars
by adminlove520 · pythonpoc
https://github.com/adminlove520/CVE-Poc_All_in_One/tree/main/2025/CVE-2025-2304
nomisec
WORKING POC
by estebanzarate · poc
https://github.com/estebanzarate/CVE-2025-2304-Camaleon-CMS-Mass-Assignment-Privilege-Escalation-PoC
nomisec
WORKING POC
by sparrowhawk1113 · poc
https://github.com/sparrowhawk1113/Exploit-for-CVE-2025-2304
Scores
CVSS v4
9.4
EPSS
0.0018
EPSS Percentile
39.8%
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Details
CWE
CWE-915
Status
published
Products (2)
owen2345/camaleon-cms
< 2.9.1
rubygems/camaleon_cms
0 - 2.9.1RubyGems
Published
Mar 14, 2025
Tracked Since
Feb 18, 2026