CNNVD-202511-2725 Information

CNNVD ID

CNNVD-202511-2725

CVE-2025-64066

  • CNNVD Published: 2025-11-25

Description (Chinese)

Primakon Pi Portal是克罗地亚Primakon公司的一个项目、合同管理平台。 Primakon Pi Portal 1.0.18版本存在安全漏洞,该漏洞源于/api/v2/user/register端点缺少授权检查,可能导致未经授权的用户注册。

Description (English)

Primakon Pi Portal is a project, contract management platform for Primakon, Croatia. There is a security loophole in version 1.0.18 of Primakon Pi Portal, which stems from the lack of authorization to check the endpoint/api/v2/user/register, which may lead to unauthorized user registration.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Primakon

Published

2025-11-25

Last Modified

2026-02-24

References

https://github.com/n3k7ar91/Vulnerabilites/blob/main/Primakon/CVE-2025-64066.md https://www.primakon.com/rjesenja/primakon-pcm/ https://access.redhat.com/security/cve/cve-2025-64066

Share on: