CVE-2025-28041

Incorrect access control in the doFilter function of itranswarp up to 2.19 allows attackers to access sensitive components without authentication.
References
Link Resource
https://github.com/michaelliao/itranswarp/issues/73 Exploit Issue Tracking Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:liaoxuefeng:itranswarp:*:*:*:*:*:*:*:*

History

10 Sep 2025, 14:07

Type Values Removed Values Added
CPE cpe:2.3:a:liaoxuefeng:itranswarp:*:*:*:*:*:*:*:*
First Time Liaoxuefeng
Liaoxuefeng itranswarp
References () https://github.com/michaelliao/itranswarp/issues/73 - () https://github.com/michaelliao/itranswarp/issues/73 - Exploit, Issue Tracking, Third Party Advisory

21 Aug 2025, 14:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.6
CWE CWE-284
Summary
  • (es) El control de acceso incorrecto en la función doFilter de itranswarp hasta 2.19 permite a los atacantes acceder a componentes sensibles sin autenticación.

20 Aug 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-20 17:15

Updated : 2025-09-10 14:07


NVD link : CVE-2025-28041

Mitre link : CVE-2025-28041

CVE.ORG link : CVE-2025-28041


JSON object : View

Products Affected

liaoxuefeng

  • itranswarp
CWE
CWE-284

Improper Access Control