CVE-2025-51627
MEDIUMAgenzia Impresa Eccobook v2.81.1 - Privilege Escalation
Title source: llmDescription
Incorrect access control in CaricaVerbale in Agenzia Impresa Eccobook v2.81.1 allows authenticated attackers with low-level access to escalate privileges to Administrator.
References (3)
Core 3
Scores
CVSS v3
6.5
EPSS
0.0006
EPSS Percentile
17.1%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
no
Technical Impact
total
Details
CWE
CWE-284
Status
published
Published
Aug 05, 2025
Tracked Since
Feb 18, 2026