CVE-2025-23761

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Jan 16, 2025
CWE ID 862

Summary

CVE-2025-23761 is aMissing Authorization vulnerability that affects the Alex Volkov Woo Tuner application. The flaw permits unauthorized access when security levels in the access control are incorrectly configured. This issue poses a risk for versions of Woo Tuner ranging from n/a to 0.1.2. Successful exploitation could result in attackers gaining unauthorized access to the system, potentially leading to data theft or system damage. System administrators are advised to update to the latest version or apply appropriate workarounds to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share