CVE-2025-4378 Information
Jun 26, 2025
cve
Description
Cleartext Transmission of Sensitive Information Use of Hard-coded Credentials vulnerability in Ataturk University ATA-AOF Mobile Application allows Authentication Abuse Authentication Bypass.This issue affects ATA-AOF Mobile Application: before 20.06.2025.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:L
Reference
https://www.usom.gov.tr/bildirim/tr-25-0135
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
CHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
LOW
Base Severity
10.0
Related CNNVD
CNNVD-202506-3106 (Published: 2025-06-24)
Share on: