CVE-2025-29504

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Apr 3, 2025
Updated: Apr 7, 2025
CWE ID 276

Summary

CVE-2025-29504 is an Insecure Permission vulnerability affecting the student-manage 1 application. This issue allows a local attacker to exploit unsafe permission verification, granting them elevated privileges beyond their intended access level. Successful exploitation could result in unauthorized modification, deletion, or access to sensitive data or system configurations. The vulnerability poses a significant risk to organizations using this application, making it crucial for administrators to apply the necessary patches or updates as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share