CVE-2025-30915

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Apr 3, 2025
Updated: Apr 7, 2025
CWE ID 862

Summary

CVE-2025-30915 is a Missing Authorization vulnerability affecting the Small Package Quotes – Worldwide Express Edition from enituretechnology. This issue arises due to incorrectly configured access control security levels, enabling exploitation. The vulnerability exists in versions 5.2.19 and below. An attacker can potentially gain unauthorized access to sensitive information or perform unintended actions within the application. Users are advised to apply the necessary patches or upgrades to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share