CVE-2025-29453

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Apr 17, 2025
Updated: Apr 22, 2025
CWE ID 918

Summary

CVE-2025-29453 is a vulnerability affecting the Personal Management System version 1.4.65. This issue permits a remote attacker to exploit the my-contacts-settings component, granting unauthorized access to sensitive information. The precise method of exploitation involves manipulating specific functionality within this component. Successful exploitation could lead to the exposure of confidential data, posing a significant risk to system security. Users are strongly encouraged to update their systems to the latest version to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share