ABC Fine Wine & Spirits Android App version v.11.27.5 and before (package name com.cta.abcfinewineandspirits), developed by ABC Liquors, Inc., contains an improper access control vulnerability in its login mechanism. The application does not properly validate user passwords during authentication, allowing attackers to bypass login checks and obtain valid session identifiers. Successful exploitation could result in unauthorized account access, privacy breaches, and misuse of the platform.
Metrics
Affected Vendors & Products
References
History
Fri, 31 Oct 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Abc Liquors
Abc Liquors fine Wine And Spirits App Google android Wine Wine wine |
|
| Vendors & Products |
Abc Liquors
Abc Liquors fine Wine And Spirits App Google android Wine Wine wine |
Thu, 30 Oct 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 | |
| Metrics |
cvssV3_1
|
Thu, 30 Oct 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ABC Fine Wine & Spirits Android App version v.11.27.5 and before (package name com.cta.abcfinewineandspirits), developed by ABC Liquors, Inc., contains an improper access control vulnerability in its login mechanism. The application does not properly validate user passwords during authentication, allowing attackers to bypass login checks and obtain valid session identifiers. Successful exploitation could result in unauthorized account access, privacy breaches, and misuse of the platform. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-10-30T20:42:34.709Z
Reserved: 2025-09-26T00:00:00.000Z
Link: CVE-2025-61115
Updated: 2025-10-30T20:42:19.317Z
Status : Received
Published: 2025-10-30T16:15:36.120
Modified: 2025-10-30T21:15:35.310
Link: CVE-2025-61115
No data.