Authorization Bypass Through User-Controlled Key vulnerability in Akinsoft OctoCloud allows Resource Leak Exposure.
This issue affects OctoCloud: from s1.09.02 before v1.11.01.
Metrics
Affected Vendors & Products
References
History
Sat, 06 Jun 2026 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Authorization Bypass Through User-Controlled Key vulnerability in Akinsoft OctoCloud allows Resource Leak Exposure.This issue affects OctoCloud: from s1.09.02 before v1.11.01. | Authorization Bypass Through User-Controlled Key vulnerability in Akinsoft OctoCloud allows Resource Leak Exposure. This issue affects OctoCloud: from s1.09.02 before v1.11.01. |
| References |
|
Wed, 03 Sep 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Akinsoft
Akinsoft octocloud |
|
| Vendors & Products |
Akinsoft
Akinsoft octocloud |
Tue, 02 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 02 Sep 2025 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Authorization Bypass Through User-Controlled Key vulnerability in Akinsoft OctoCloud allows Resource Leak Exposure.This issue affects OctoCloud: from s1.09.02 before v1.11.01. | |
| Title | IDOR in Akinsoft's OctoCloud | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: TR-CERT
Published: 2025-09-02T11:48:09.493Z
Updated: 2026-06-06T07:21:20.128Z
Reserved: 2025-01-22T13:57:30.713Z
Link: CVE-2025-0640
Updated: 2025-09-02T13:32:06.304Z
Status : Deferred
Published: 2025-09-02T12:15:35.853
Modified: 2026-06-06T08:16:47.850
Link: CVE-2025-0640
No data.
ReportizFlow