CVE-2025-22591

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Jan 7, 2025
CWE ID 862

Summary

CVE-2025-22591 is a critical vulnerability affecting the Lenderd 1003 Mortgage Application. The issue lies in the lack of sufficient authorization checks, enabling unauthorized access. This vulnerability can be exploited by malicious actors who can take advantage of incorrectly configured access control security levels. The impacted versions of the 1003 Mortgage Application range from n/a to 1.87. Successful exploitation may lead to unauthorized data access or manipulation, posing a significant risk to financial data security.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share