CVE-2025-1847HIGH 8.8EPSS p36.9%
CVE-2025-1847CVE-2025-1847
Description
A vulnerability was found in zj1983 zz up to 2024-8. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to improper authorization. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Scoring
| CVSS 3.1 | 8.8 (HIGH) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.47% probability of exploitation · percentile 36.9% · 2026-06-19T12:03:05Z |
| Published | 2025-03-03 |
| Last modified | 2025-05-26 |
Underlying weaknesses· 2
References
2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Incorrect Privilege Assignmentcwe-266 | 0% | live |
| Weakness | Improper Authorizationcwe-285 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.