CVE-2025-40669

Incorrect authorization vulnerability in TCMAN's GIM v11. This vulnerability allows an unprivileged attacker to modify the permissions held by each of the application's users, including the user himself by sending a POST request to /PC/Options.aspx?Command=2&Page=-1.
Configurations

Configuration 1 (hide)

cpe:2.3:a:tcman:gim:11.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-06-09 13:15

Updated : 2025-10-06 19:37


NVD link : CVE-2025-40669

Mitre link : CVE-2025-40669

CVE.ORG link : CVE-2025-40669


JSON object : View

Products Affected

tcman

  • gim
CWE
CWE-863

Incorrect Authorization