CVE-2025-51627 Information

Description

Incorrect access control in CaricaVerbale in Agenzia Impresa Eccobook v2.81.1 allows authenticated attackers with low-level access to escalate privileges to Administrator.

Reference

http://agenziaimpresa.com http://eccobook.com https://github.com/CapgeminiCisRedTeam/Disclosure/blob/main/CVE%20PoC/CVE-2025-51627%20%7C%20Eccobook.md

CNNVD-202508-359 (Published: 2025-08-05)

Share on: