CVE-2025-29453
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Apr 17, 2025
Updated: Apr 22, 2025
CWE ID 918
Summary
CVE-2025-29453 is a vulnerability affecting the Personal Management System version 1.4.65. This issue permits a remote attacker to exploit the my-contacts-settings component, granting unauthorized access to sensitive information. The precise method of exploitation involves manipulating specific functionality within this component. Successful exploitation could lead to the exposure of confidential data, posing a significant risk to system security. Users are strongly encouraged to update their systems to the latest version to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.