CVE-2025-25614
HIGHUnifiedtransform 2.0 - Privilege Escalation via Incorrect Access Control
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2025-25614. PoCs published by armaansidana2003.
AI-analyzed exploit summary This repository contains a writeup for CVE-2025-25614, detailing an incorrect access control vulnerability in Unifiedtransform v2.0 that allows teachers to escalate privileges by modifying other teachers' data. The PoC involves navigating to a specific endpoint and editing details without proper authorization checks.
Description
Incorrect Access Control in Unifiedtransform 2.0 leads to Privilege Escalation, which allows teachers to update the personal data of fellow teachers.
Exploits (1)
This repository contains a writeup for CVE-2025-25614, detailing an incorrect access control vulnerability in Unifiedtransform v2.0 that allows teachers to escalate privileges by modifying other teachers' data. The PoC involves navigating to a specific endpoint and editing details without proper authorization checks.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H