CVE-2025-22720

CVSS 3.1 Score 5.8 of 10 (medium)

Details

Published Jan 31, 2025
CWE ID 862

Summary

CVE-2025-22720 is a critical vulnerability affecting MagePeople Team Booking and Rental Manager. This issue arises from missing authorization checks, permitting unauthorized access to functionalities. The flaw exposes incorrectly configured access control security levels, enabling attackers to exploit the vulnerability. The vulnerability lies in versions of the Booking and Rental Manager software from n/a through 2.2.1. This security lapse could result in potential data breaches, unauthorized modifications, or further system compromises. Users are advised to upgrade to a patched version immediately to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share