9.8
CVE-2025-60534
- EPSS 0.11%
- Veröffentlicht 06.01.2026 00:00:00
- Zuletzt bearbeitet 29.01.2026 01:24:16
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Blue Access Cobalt v02.000.195 suffers from an authentication bypass vulnerability, which allows an attacker to selectively proxy requests in order to operate functionality on the web application without the need to authenticate with legitimate credentials.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Blueaccesstech ≫ Cobalt X1 Version02.000.195
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.11% | 0.304 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.