← back
CVE-2025-3013

Insecure direct object references (IDOR) in NightWolf Penetration Platform

CVSS 8.3 HIGHEPSS 0.3%CWE-285
Insecure Direct Object References (IDOR) in access control in Customer Portal before 2.1.4 on NightWolf Penetration Testing allows an attacker to access via manipulating request parameters or object references.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →