CVE-2025-24692
CVSS 3.1 Score 7.1 of 10 (high)
Details
Summary
CVE-2025-24692 is a Missing Authorization vulnerability affecting the Michael Revellin-Clerc Bulk Menu Edit software. If access control security levels are incorrectly configured, an attacker can exploit this issue and gain unauthorized access to perform bulk menu editing actions. The vulnerability has been identified in versions from n/a through 1.3. This security flaw could potentially allow unauthorized modifications to the system, posing a significant risk to affected organizations. It is crucial that users of the Bulk Menu Edit software review their access control settings and apply necessary patches or updates to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.