CYBER CODE RED

Get real-time updates on Telegram

P5Verified

CVE-2025-41069: DSuite 2025 v02.14.1115

CVE-2025-41069. EPSS 0.00246 (percentile 0.14486), scored 2026-10-06.

Affected technology

DSuite 2025 · v02.14.1115
T-Innova DeporSite

Component: Not specified by the source

Attack conditions (Vendor/CNA, CVSS 4.0): Network (remote) · Low privileges required · No user interaction required

What an attacker can do

An attacker can access or modify unauthorized resources by manipulating requests using the 'idUsuario' parameter in ‘/ajax/TInnova_v2/Formulario_Consentimiento/llamadaAjax/obtenerDatosConsentimientos’, which could lead to the exposure or alteration os confidential data. Vendor/CNA’s CVSS 4.0 assessment (base score 5.3/10) rates confidentiality and availability impact as none; integrity impact as low.

Published

CWE
CWE-639
CCR priority
0.1 /100 (P5)
EPSS
0.00246 · percentile 0.14486 · 2026-10-06
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2025-41069.html