Insecure Direct Object Reference in Benner Connecta Affects Remote Access
CVE-2025-1645
5.3MEDIUM
What is CVE-2025-1645?
A vulnerability exists in Benner Connecta 1.0.5330 that allows for improper control of resource identifiers within the file /Usuarios/Usuario/EditarLogado/. This weakness can be exploited remotely, posing a significant risk of unauthorized access or manipulation of user resources. Despite early disclosure attempts to the vendor, there was no response, leaving systems potentially exposed to attack.
Affected Version(s)
Connecta 1.0.5330