Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 24 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 24 Dec 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SOCA Access Control System 180612 contains multiple insecure direct object reference vulnerabilities that allow attackers to access sensitive user credentials. Attackers can retrieve authenticated and unauthenticated user password hashes and pins through unprotected endpoints like Get_Permissions_From_DB.php and Ac10_ReadSortCard. | |
| Title | SOCA Access Control System 180612 Information Disclosure via Multiple Endpoints | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-12-24T20:27:15.081Z
Reserved: 2025-12-24T14:28:02.432Z
Link: CVE-2018-25129
Updated: 2025-12-24T20:14:45.708Z
Status : Awaiting Analysis
Published: 2025-12-24T20:15:46.537
Modified: 2025-12-29T15:58:13.147
Link: CVE-2018-25129
No data.
OpenCVE Enrichment
No data.