We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
An authentication bypass vulnerability was found in Videx's CyberAudit-Web. Through the exploitation of a logic flaw, an attacker could create a valid session without any credentials. This vulnerability has been patched in versions later than 9.5 and a patch has been made available to all instances of CyberAudit-Web, including the versions that are End of Maintenance (EOM). Anyone that requires support with the resolution of this issue can contact support@videx.com for assistance.
Reserved 2025-01-03 | Published 2025-04-10 | Updated 2025-04-10 | Assigner DIVDCWE-287 Improper Authentication
Hidde Smit (DIVD)
Wietse Boonstra (DIVD)
Max van der Horst (DIVD)
csirt.divd.nl/CVE-2025-22375
csirt.divd.nl/DIVD-2024-00043/
Support options