CVE-2025-8532
IDOR in Bimser's eBA Document and Workflow Management System
CVSS Score
6.4
EPSS Score
0.0%
EPSS Percentile
2th
Authorization Bypass Through User-Controlled Key, Improper Authorization vulnerability in Bimser Solution Software Trade Inc. EBA Document and Workflow Management System allows Forceful Browsing. This issue affects eBA Document and Workflow Management System: from 6.7.164 before 6.7.166.
| CWE | CWE-639 CWE-285 |
| Vendor | bimser solution software trade inc. |
| Product | eba document and workflow management system |
| Published | Sep 19, 2025 |
| Last Updated | Jun 5, 2026 |
Stay Ahead of the Next One
Get instant alerts for bimser solution software trade inc. eba document and workflow management system
Be the first to know when new medium vulnerabilities affecting bimser solution software trade inc. eba document and workflow management system are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:H/A:N Attack Vector
Local
Attack Complexity
High
Privileges Required
Low
User Interaction
None
Scope
Changed
Confidentiality
Low
Integrity
High
Availability
None
Affected Versions
Bimser Solution Software Trade Inc. / eBA Document and Workflow Management System
6.7.164 < 6.7.166
References
Credits
Aysun EYฤฐZ