Configuration Flaw in Internet2 Grouper Product by Internet2
CVE-2025-59714
6.5MEDIUM
What is CVE-2025-59714?
A configuration vulnerability in Internet2 Grouper allows group administrators without sysadmin privileges to configure loader jobs, potentially leading to unauthorized access or unintended changes within the system. This flaw highlights the need for improved access controls to ensure that users cannot perform administrative actions without the necessary permissions.
Affected Version(s)
Grouper 5.17.1 < 5.20.5