CVE 8.8 HIGH

Ventem|e-School – Missing Authorization_CVE-2025-8322

8.8 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

The e-School from Ventem has a Missing Authorization vulnerability, allowing remote attackers with regular privilege to access administrator functions, including creating, modifying, and deleting accounts. They can even escalate any account to system administrator privilege.

Basic Information

ID CVE-2025-8322
Source twcert
Published Jul 30, 2025 at 02:49
Modified Jul 30, 2025 at 13:43

Affected Product

Vendor Ventem
Product e-School
Affected Versions Ventem e-School 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.