CVE-2025-50674

An issue was discovered in the changePassword method in file /usr/share/php/openmediavault/system/user.inc in OpenMediaVault 7.4.17 allowing local authenticated attackers to escalate privileges to root.
Configurations

No configuration.

History

26 Aug 2025, 15:15

Type Values Removed Values Added
Summary
  • (es) Se descubrió un problema en el método changePassword en el archivo /usr/share/php/openmediavault/system/user.inc en OpenMediaVault 7.4.17 que permite a atacantes autenticados locales escalar privilegios a root.
References
  • () https://xbz0n.sh/blog/CVE-2025-50674 -

22 Aug 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-22 16:15

Updated : 2025-08-26 15:15


NVD link : CVE-2025-50674

Mitre link : CVE-2025-50674

CVE.ORG link : CVE-2025-50674


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation

CWE-269

Improper Privilege Management