CVSSv4: NA |
CVSSv3: 8.8 |
CVSSv2: NA |
VMScore: 980 |
EPSS: 0.00109 |
KEV: Not Included
Published: 12/03/2025 Updated: 12/03/2025
Vulnerability Summary
Unauthenticated Privilege Escalation in tNexus Airport View v.2.8 API
An issue in dtp.ae tNexus Airport View v.2.8 allows a remote malicious user to escalate privileges via the ProfileID value to the [/tnexus/rest/admin/updateUser] API endpoint