CNNVD-202506-3117 Information

CNNVD ID

CNNVD-202506-3117

CVE-2025-49851

  • CNNVD Published: 2025-06-24

Description (Chinese)

Control iD iDSecure On-premises是巴西Control iD公司的一款访问控制软件,用于管理人员和车辆的进出。 Control iD iDSecure On-premises 4.7.48.0及之前版本存在授权问题漏洞,该漏洞源于认证不当,可能导致绕过认证并获取权限。

Description (English)

Control iD Secure On-premises is a access control software for managers and vehicles of the Brazilian company Control iD. Control iD iDSecure On-premises 4.7.48.0 and previous versions had a mandate gap, which stemmed from improper authentication and could lead to circumvention and access.

Hazard Level

Medium

Vulnerability Type

授权问题

Affected Vendor

Control iD

Published

2025-06-24

Last Modified

2026-02-24

References

https://www.cisa.gov/news-events/ics-advisories/icsa-25-175-05

Patch

https://www.controlid.com.br/en/access-control/idsecure/

Share on: