Directory Listing Vulnerability in Kashipara Online Service Management Portal
CVE-2025-45320

5.3MEDIUM

Key Information:

Vendor

Kashipara

Vendor
CVE Published:
5 May 2025

What is CVE-2025-45320?

A directory listing vulnerability has been identified in the Kashipara Online Service Management Portal V1.0. This vulnerability allows unauthorized users to gain access to sensitive information within the /osms/Requester/ directory. When exploited, it can lead to the exposure of files and data that should otherwise be restricted. This vulnerability emphasizes the need for proper security measures to prevent unauthorized access and protect sensitive files from exposure.

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-45320 : Directory Listing Vulnerability in Kashipara Online Service Management Portal