CVE-2025-22277

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Apr 1, 2025
CWE ID 288

Summary

CVE-2025-22277 is a newly disclosed vulnerability affecting the appsbd Vitepos application. This issue involves an Authentication Bypass Using an Alternate Path or Channel vulnerability, enabling unauthorized access and authentication abuse. The flaw allows bypassing the regular authentication process, posing a significant security risk to systems using Vitepos versions from n/a to 3.1.4. It is crucial for organizations using these affected versions to apply the necessary patches or updates as soon as possible to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share