Fudo Enterprise in versions from 5.5.0 through 5.6.2 allows low privileged users to access certain administrator-only resources via improperly protected API endpoints. This includes sensitive information such as system logs and parts of system configuration settings.
This vulnerability has been fixed in version 5.6.3
Metrics
Affected Vendors & Products
References
History
Mon, 20 Apr 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Fudo Enterprise in versions from 5.5.0 through 5.6.2 allows low privileged users to access certain administrator-only resources via improperly protected API endpoints. This includes sensitive information such as system logs and parts of system configuration settings. This vulnerability has been fixed in version 5.6.3 | |
| Title | Incorrect authorization in Fudo Enterprise | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: CERT-PL
Published:
Updated: 2026-04-20T09:00:16.259Z
Reserved: 2025-11-20T14:44:26.478Z
Link: CVE-2025-13480
No data.
Status : Received
Published: 2026-04-20T10:16:16.060
Modified: 2026-04-20T10:16:16.060
Link: CVE-2025-13480
No data.