Security Advisory

CVE-2025-41020

7.5
HIGH

Vulnerability Description

Insecure direct object reference (IDOR) vulnerability in Sergestec's Exito v8.0. This vulnerability allows an attacker to access data belonging to other customers through the 'id' parameter in '/admin/ticket_a4.php'.
Published Date October 16, 2025
Official Source NIST NVD Advisory