An issue in ETSI Open-Source MANO (OSM) 14.0.x before 14.0.3, 15.0.x before 15.0.2, 16.0.0, and 17.0.0 allows a remote authenticated attacker to escalate privileges via the /osm/admin/v1/users component.
Metrics
Affected Vendors & Products
References
History
Mon, 11 Aug 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue in ETSI Open-Source MANO (OSM) v.14.x, v.15.x allows a remote attacker to escalate privileges via the /osm/admin/v1/users component | An issue in ETSI Open-Source MANO (OSM) 14.0.x before 14.0.3, 15.0.x before 15.0.2, 16.0.0, and 17.0.0 allows a remote authenticated attacker to escalate privileges via the /osm/admin/v1/users component. |
Fri, 25 Jul 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-269 | |
Metrics |
cvssV3_1
|
Fri, 25 Jul 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue in ETSI Open-Source MANO (OSM) v.14.x, v.15.x allows a remote attacker to escalate privileges via the /osm/admin/v1/users component | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-07-25T00:00:00.000Z
Updated: 2025-08-11T15:50:42.642Z
Reserved: 2024-10-08T00:00:00.000Z
Link: CVE-2024-48729

Updated: 2025-07-25T20:15:16.793Z

Status : Awaiting Analysis
Published: 2025-07-25T15:15:25.033
Modified: 2025-08-11T16:15:29.777
Link: CVE-2024-48729

No data.