CyberRota Analysis
This vulnerability has an unknown severity rating. Exploitation may require the attacker to be authenticated.
CVE
CVE-2025-13932
Severity
UNKNOWN
CVSS
N/A
EPSS
0.25%
Original NVD Description
The SolisCloud API suffers from a Broken Access Control vulnerability, specifically an Insecure Direct Object Reference (IDOR), where any authenticated user can access detailed data of any plant by altering the plant_id in the request.