Authorization Flaw in SUNNET Corporate Training Management System
CVE-2025-54943

9.3CRITICAL

What is CVE-2025-54943?

A missing authorization vulnerability in the SUNNET Corporate Training Management System prior to version 10.11 enables remote attackers to conduct unauthorized application deployments. This security oversight stems from inadequate access control measures, allowing unauthorized actions that can compromise the integrity and security of the system.

Affected Version(s)

Corporate Training Management System 0

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-54943 : Authorization Flaw in SUNNET Corporate Training Management System