CVE-2025-54551

MEDIUM

Synapse Mobility <8.2 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Synapse Mobility 8.0, 8.0.1, 8.0.2, 8.1, and 8.1.1 contain a privilege escalation vulnerability through external control of Web parameter. If exploited, a user of the product may escalate the privilege and access data that the user do not have permission to view by altering the parameters of the search function.

Scores

CVSS v3 4.3
EPSS 0.0004
EPSS Percentile 12.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-472
Status published
Products (5)
FUJIFILM Healthcare Americas Corporation/Synapse Mobility 8.0
FUJIFILM Healthcare Americas Corporation/Synapse Mobility 8.0.1
FUJIFILM Healthcare Americas Corporation/Synapse Mobility 8.0.2
FUJIFILM Healthcare Americas Corporation/Synapse Mobility 8.1
FUJIFILM Healthcare Americas Corporation/Synapse Mobility and 8.1.1
Published Aug 20, 2025
Tracked Since Feb 18, 2026