CVE 5.3 MEDIUM

elunez eladmin LocalStorageController deleteFile improper authorization_CVE-2025-9937

5.3 / 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:P

Description

A security flaw has been discovered in elunez eladmin 1.1. Impacted is the function deleteFile of the component LocalStorageController. The manipulation results in improper authorization. The attack may be performed from remote. The exploit has been released to the public and may be exploited.

Basic Information

ID CVE-2025-9937
Source VulDB
Published Sep 3, 2025 at 23:32

Affected Product

Vendor elunez
Product eladmin
Version 1.1
Affected Versions elunez eladmin 1.1

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.