CVE-2025-37160

Source
https://cve.org/CVERecord?id=CVE-2025-37160
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-37160.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-37160
Published
2025-11-18T19:15:48.133Z
Modified
2026-03-12T20:20:14.226856Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
[none]
Details

A broken access control (BAC) vulnerability in the web-based management interface could allow an authenticated remote attacker with low privileges to view sensitive information. Successful exploitation of this vulnerability could enable the attacker to disclose sensitive data.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-37160.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "10.10.0000"
            },
            {
                "fixed": "10.10.1170"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "10.13.0000"
            },
            {
                "fixed": "10.13.1101"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "10.14.0000"
            },
            {
                "fixed": "10.14.1060"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "10.15.0000"
            },
            {
                "fixed": "10.15.1030"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "10.16.0000"
            },
            {
                "fixed": "10.16.1001"
            }
        ]
    }
]