Security Advisory

CVE-2025-2202

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-17 10:14:37
Last updated 2025-03-17 12:15:05
Assigner INCIBE
State PUBLISHED

Description

Broken access control vulnerability in the Innovación y Cualificación local administration plugin ajax.php. This vulnerability allows an attacker to obtain sensitive information about other users such as id, name, login and email.