Security Advisory

CVE-2025-63822

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-05 00:00:00
Last updated 2026-08-06 14:04:30
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SirenGPS Android Application 2.19.44 is vulnerable to Incorrect Access Control. An authenticated attacker can manipulate user identifier parameters to bypass authorization controls and gain unauthorized READ and WRITE access to other users' personal information. The API fails to validate that the requesting user is authorized to access the target user's data.