Broken Access Control in iCount Payment Gateway by iCount
CVE-2025-53295
5.3MEDIUM
What is CVE-2025-53295?
The iCount Payment Gateway has a broken access control vulnerability that allows unauthorized users to access functionality not properly constrained by access control lists (ACLs). This issue affects versions ranging from n/a to 2.0.6, making it critical for administrators to ensure proper authorization measures are implemented to protect sensitive transaction processes.
Affected Version(s)
iCount Payment Gateway <= 2.0.6