CVE-2025-23880
CVSS 3.1 Score 7.1 of 10 (high)
Details
Summary
CVE-2025-23880 is a Cross-Site Request Forgery (CSRF) vulnerability affecting the amr personalise software. This issue enables an attacker to manipulate a victim's browser into making unintended actions on the affected system, such as changing settings or initiating transactions. The vulnerability can be exploited through maliciously crafted websites, posing a significant risk to users of amr personalise versions 2.1 and below. Successful exploitation of this CSRF vulnerability could lead to unauthorized modifications or unintended actions within the affected system.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.