ZeroHour

CVE-2025-28355

PoC
CVSS 3.1
4.7 medium
EPSS
<1%p12
Published
()
Modified
Description

Volmarg Personal Management System 1.4.65 is vulnerable to Cross Site Request Forgery (CSRF) allowing attackers to execute arbitrary code and obtain sensitive information via the SameSite cookie attribute defaults value set to none

Vendors
personal-management-system
Products
personal management system
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.