Insufficient User Privileges in Proget Mobile Device Management by Incredibuild
CVE-2025-1418
5.1MEDIUM
What is CVE-2025-1418?
A low-privileged user in Proget Mobile Device Management can gain access to non-sensitive information about profiles. These profiles outline allowed and prohibited functions within the system but do not disclose sensitive data relating to their application on connected devices. The issue has been resolved in version 2.17.5 of Konsola Proget, ensuring enhanced security and user access limitations.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Proget 0 < 2.17.5
References
CVSS V4
Score:
5.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Marcin Węgłowski (AFINE)
