CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.1. Exploitation may require the attacker to be authenticated.
CVE
CVE-2025-40664
Severity
CRITICAL
CVSS
9.1
EPSS
0.49%
Original NVD Description
Missing authentication vulnerability in TCMAN GIM v11. This allows an unauthenticated attacker to access the resources /frmGestionUser.aspx/GetData, /frmGestionUser.aspx/updateUser and /frmGestionUser.aspx/DeleteUser.
Related CVEs
Other vulnerabilities affecting the same vendor(s)