CVE-2025-3014

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Mar 31, 2025
Updated: Apr 1, 2025
CWE ID 79

Summary

CVE-2025-3014 is a vulnerability affecting Tracking 2.1.4 on NightWolf Penetration Testing. This issue involves Insecure Direct Object References (IDOR) in the access control system. By manipulating request parameters or object references, an attacker can gain unauthorized access to data or functions, potentially leading to sensitive information disclosure or unintended actions. This vulnerability poses a significant risk to the confidentiality and integrity of data handled by the affected system. It is essential that users of Tracking 2.1.4 on NightWolf Penetration Testing apply the necessary patches or updates to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share