CVE-2025-8532

MEDIUM

Bimser Solution Software Trade Inc. EBA Document and Workflow Manag...

Title source: llm
STIX 2.1

Description

Authorization Bypass Through User-Controlled Key, Improper Authorization vulnerability in Bimser Solution Software Trade Inc. EBA Document and Workflow Management System allows Forceful Browsing.This issue affects eBA Document and Workflow Management System: from 6.7.164 before 6.7.166.

References (1)

Core 1
Core References
Third Party Advisory, US Government Resource
https://www.usom.gov.tr/bildirim/tr-25-0280

Scores

CVSS v3 6.4
EPSS 0.0001
EPSS Percentile 1.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-285 CWE-639
Status published
Products (1)
Bimser Solution Software Trade Inc./eBA Document and Workflow Management System 6.7.164 - 6.7.166
Published Sep 19, 2025
Tracked Since Feb 18, 2026