boldworkplanner CVE 脆弱性と CVE 一覧(9)

製品(CPE): — CVE 件数: 9

boldworkplanner 脆弱性概要

This page aggregates publicly disclosed CVE and security risk information related to boldworkplanner, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

脆弱性分布の推移(直近24か月)

表示中 19 / 9 CVE 件数
«« 先頭 « 前へ 1 / 1 次へ »
CVE 概要 ソース CVSS 最大値 EPSS(%) 公開 更新
CVE-2025-41099 Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner in versions prior to 2.5.25 (4935b438f9b), consisting of a lack of adequate validation of user input, allowing an authenticated user to access to the list of permissions using unauthorised internal identifiers. [email protected] 7.1 0.03% 2025-09-30 2025-10-08
CVE-2025-41098 Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner in versions prior to 2.5.25 (4935b438f9b), consisting of a  misuse of the general enquiry web service. [email protected] 7.1 0.04% 2025-09-30 2025-10-08
CVE-2025-41097 Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner in versions prior to 2.5.25 (4935b438f9b), consisting of a lack of adequate validation of user input, allowing an authenticated user to access to basic employee details using unauthorised internal identifiers. [email protected] 7.1 0.04% 2025-09-30 2025-10-08
CVE-2025-41096 Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner in versions prior to 2.5.25 (4935b438f9b), consisting of a lack of adequate validation of user input, allowing an authenticated user to access to the dates of the current contract details using unauthorised internal identifiers. [email protected] 7.1 0.04% 2025-09-30 2025-10-08
CVE-2025-41095 Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner in versions prior to 2.5.25 (4935b438f9b), consisting of a lack of adequate validation of user input, allowing an authenticated user to access to planning counter details using unauthorised internal identifiers. [email protected] 7.1 0.04% 2025-09-30 2025-10-08
CVE-2025-41094 Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner in versions prior to 2.5.25 (4935b438f9b), consisting of a lack of adequate validation of user input, allowing an authenticated user to access to functional contract details using unauthorised internal identifiers. [email protected] 7.1 0.04% 2025-09-30 2025-10-08
CVE-2025-41093 Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner in versions prior to 2.5.25 (4935b438f9b), consisting of a lack of adequate validation of user input, allowing an authenticated user to access to basic contract details using unauthorised internal identifiers. [email protected] 7.1 0.04% 2025-09-30 2025-10-08
CVE-2025-41092 Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner in versions prior to 2.5.25 (4935b438f9b), consisting of a lack of adequate validation of user input, allowing an authenticated user to access to time records details using unauthorised internal identifiers. [email protected] 7.1 0.04% 2025-09-30 2025-10-08
CVE-2025-41091 Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner in versions prior to 2.5.25 (4935b438f9b), consisting of a lack of adequate validation of user input, allowing an authenticated user to access to calendar details using unauthorised internal identifiers. [email protected] 7.1 0.04% 2025-09-30 2025-10-08
«« 先頭 « 前へ 1 / 1 次へ »
cvelogic Threat Intelligence