CVE Details
Basic Information
| Title | CVE-2025-48346 |
|---|---|
| Type | cve |
| Published | 2025-05-19T15:15:32 |
| Last Seen | 2025-05-19T15:18:33 |
CVSS Information
| Base Score | 5.3 (MEDIUM) |
|---|---|
| Attack Vector | NETWORK |
| Attack Complexity | LOW |
| Privileges Required | NONE |
| User Interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality Impact | NONE |
| Integrity Impact | LOW |
| Availability Impact | NONE |
AI Analysis
| AI Description | A Missing Authorization vulnerability in the Etsy360 plugin allows unauthorized access to certain functionalities due to improper ACL constraints. |
|---|---|
| AI Severity | Medium |
| Vendor | Etsy |
| Product | Etsy360 |
| Affected Version | Unspecified |
Additional Information
| CVE List | CVE-2025-48346 |
|---|---|
| CWE List | CWE-862 |
| Bulletin Family | cve |
Description
Missing Authorization vulnerability in Etsy360 Embed and Integrate Etsy Shop allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Embed and Integrate Etsy…
CVSS Score Summary
Base Score: %!f(string=#) (MEDIUM)