CVE-2025-30361

Published Mar 27, 2025

Last updated 2 months ago

Overview

Description
WeGIA is a Web manager for charitable institutions. A security vulnerability was identified in versions prior to 3.2.6, where it is possible to change a user's password without verifying the old password. This issue exists in the control.php endpoint and allows unauthorized attackers to bypass authentication and authorization mechanisms to reset the password of any user, including admin accounts. Version 3.2.6 fixes the issue.
Source
security-advisories@github.com
NVD status
Analyzed

Risk scores

CVSS 4.0

Type
Secondary
Base score
9.3
Impact score
-
Exploitability score
-
Vector string
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:L/SC:L/SI:H/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Severity
CRITICAL

CVSS 3.1

Type
Primary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

security-advisories@github.com
CWE-287
nvd@nist.gov
NVD-CWE-noinfo

Social media

Hype score
Not currently trending
  1. Robust security measures are crucial to prevent CVE-2025-30361 and CVE-2025-22783 exploits, including strong passwords and firewalls

    @LeBraunneZen

    19 Apr 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. Strengthen digital defences with custom functions and expert guidance to prevent CVE-2025-30361 and CVE-2025-22783 attacks and protect digital assets

    @LeBraunneZen

    19 Apr 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. Stay vigilant with expert advice and regular updates to mitigate CVE-2025-30361 and CVE-2025-22783 threats, and protect digital assets from emerging cyber threats with robust security measures and enhanced digital defences

    @LeBraunneZen

    19 Apr 2025

    25 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. CVE-2025-30361 threatens charitable organisations, protect digital assets with updates and strong passwords

    @LeBraunneZen

    19 Apr 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. CVE-2025-30361 vulnerability detected, prioritise system updates and strong passwords for protection

    @LeBraunneZen

    19 Apr 2025

    8 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. Protect your digital assets from CVE-2025-30361 and CVE-2025-22783 by updating software and using strong passwords and firewalls

    @LeBraunneZen

    19 Apr 2025

    13 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. CVE-2025-30361 detected, update now

    @LeBraunneZen

    19 Apr 2025

    8 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. Enhance digital defences with regular updates, strong passwords, and security audits to prevent CVE-2025-30361 and CVE-2025-22783 exploits

    @LeBraunneZen

    18 Apr 2025

    8 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. Protect digital assets with regular updates and patches for CVE-2025-30361 and CVE-2025-22783

    @LeBraunneZen

    18 Apr 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  10. Enhance your digital defences against CVE-2025-30361 and CVE-2025-22783 by prioritising regular system updates, strong passwords, and conducting security audits to prevent exploits and protect digital assets

    @LeBraunneZen

    18 Apr 2025

    16 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  11. Enhance digital defences against CVE-2025-30361 and CVE-2025-22783 with robust firewalls and expert advice

    @LeBraunneZen

    18 Apr 2025

    9 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  12. Recent cyber threats detected: CVE-2025-30361 and CVE-2025-22783, update systems now

    @LeBraunneZen

    18 Apr 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  13. Mitigate CVE-2025-30361 and CVE-2025-22783 with our expert advice, prioritising system updates, strong passwords, and regular security audits to prevent exploits and protect digital assets from emerging threats

    @LeBraunneZen

    18 Apr 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  14. Strengthen digital defences against CVE-2025-30361 and CVE-2025-22783 by implementing robust firewalls, updating systems regularly, and conducting security audits to ensure protection against emerging threats

    @LeBraunneZen

    18 Apr 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  15. Update systems to prevent CVE-2025-30361 exploits

    @LeBraunneZen

    18 Apr 2025

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  16. Recent cyber threats CVE-2025-30361 and CVE-2025-22783 can be mitigated with regular updates, strong passwords, and security audits to prevent exploits and protect digital assets

    @LeBraunneZen

    11 Apr 2025

    13 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  17. Stay ahead of emerging threats like CVE-2025-30361 and CVE-2025-22783 with our expert advice: prioritise system updates, use strong passwords, conduct regular security audits, and implement robust security measures to prevent exploits

    @LeBraunneZen

    11 Apr 2025

    6 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  18. Protect your digital assets from emerging threats like CVE-2025-30361 and CVE-2025-22783 by prioritising system updates and using strong passwords

    @LeBraunneZen

    11 Apr 2025

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  19. Protect your digital assets from CVE-2025-30361 and CVE-2025-22783

    @LeBraunneZen

    11 Apr 2025

    10 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  20. Stay ahead of emerging threats like CVE-2025-30361 and CVE-2025-22783 by prioritising system updates, using strong passwords, and conducting regular security audits to prevent exploits

    @LeBraunneZen

    11 Apr 2025

    10 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  21. CVE-2025-30361 detected

    @LeBraunneZen

    11 Apr 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  22. CVE-2025-30361 identified, follow for in-depth analysis and mitigation guidance

    @LeBraunneZen

    11 Apr 2025

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  23. Mitigate CVE-2025-30361 vulnerability by updating WeGIA to version 2.1.6, using strong passwords, and enabling 2FA for enhanced security.

    @LeBraunneZen

    11 Apr 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  24. Protect against CVE-2025-30361 by updating WeGIA to version 2.1.6 and securing passwords

    @LeBraunneZen

    11 Apr 2025

    18 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  25. Mitigate the CVE-2025-30361 vulnerability by updating to version 2.1.6 and prioritising security audits

    @LeBraunneZen

    11 Apr 2025

    21 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  26. Protect against CVE-2025-30361 by updating WeGIA to version 2.1.6 and prioritising security audits

    @LeBraunneZen

    11 Apr 2025

    10 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  27. CVE-2025-30361 affects WeGIA Web manager

    @LeBraunneZen

    10 Apr 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  28. Stay vigilant against CVE-2025-30361 and CVE-2025-22783, update systems and use strong passwords

    @LeBraunneZen

    10 Apr 2025

    18 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  29. WeGIA users, be aware of CVE-2025-30361 vulnerability, update to version 2.1.6 and prioritise security audits to prevent threats

    @LeBraunneZen

    10 Apr 2025

    10 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  30. 🔴 WeGIA, Authentication Bypass, #CVE-2025-30361 (Critical) https://t.co/f2g7pmdkiM

    @dailycve

    10 Apr 2025

    6 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  31. CVE-2025-30361 has been detected, to ensure your security, update WeGIA to version 2.1.6 immediately and follow best practices to prevent potential threats

    @LeBraunneZen

    10 Apr 2025

    9 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  32. Protect digital assets from CVE-2025-30361 and CVE-2025-22783 by updating systems and prioritising security audits.

    @LeBraunneZen

    10 Apr 2025

    13 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  33. Update systems for CVE-2025-30361

    @LeBraunneZen

    10 Apr 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  34. Use strong passwords to protect against threats like CVE-2025-30361

    @LeBraunneZen

    10 Apr 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  35. Update systems for CVE-2025-30361, CVE-2025-22783

    @LeBraunneZen

    10 Apr 2025

    9 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  36. Recent threats: CVE-2025-30361 & CVE-2025-22783

    @LeBraunneZen

    10 Apr 2025

    10 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  37. Stay safe online by updating your systems and prioritising security audits for CVE-2025-30361 and CVE-2025-22783.

    @LeBraunneZen

    10 Apr 2025

    17 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  38. Recent threats include CVE-2025-30361 and CVE-2025-22783, prioritise updates

    @LeBraunneZen

    10 Apr 2025

    8 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  39. Enhance digital defences by updating to latest software versions, addressing recent vulnerabilities such as CVE-2025-30361 and CVE-2025-22783, and implementing robust security protocols to prevent attacks

    @LeBraunneZen

    10 Apr 2025

    10 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  40. CVE-2025-30361 vulnerability in WeGIA web manager allows password changes, update to 2.1.6 for security

    @LeBraunneZen

    10 Apr 2025

    19 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  41. Alert: Recent CVEs identified, including CVE-2025-30361 and CVE-2025-22783. We will provide mitigation and prevention recommendations to help strengthen your digital defences

    @LeBraunneZen

    10 Apr 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  42. CVE-2025-30361 vulnerability detected, update now

    @LeBraunneZen

    10 Apr 2025

    13 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  43. CVE-2025-30361 allows password changes, update WeGIA to version 2.1.6 or later

    @LeBraunneZen

    9 Apr 2025

    32 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  44. Protect your digital assets from CVE-2025-30361, update WeGIA and strengthen password security

    @LeBraunneZen

    9 Apr 2025

    8 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  45. CVE-2025-30361 vulnerability identified, update systems immediately

    @LeBraunneZen

    9 Apr 2025

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  46. CVE-2025-30361 vulnerability identified in WeGIA, prioritise system updates and security audits

    @LeBraunneZen

    9 Apr 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  47. Vulnerabilities like CVE-2025-30361 pose significant threats, prioritise system updates and security audits to stay secure

    @LeBraunneZen

    9 Apr 2025

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  48. Proactively protect digital assets from recent vulnerabilities, including CVE-2025-30361 and CVE-2025-22783, by retrieving solutions from datasets and updating systems to prevent exploitation

    @LeBraunneZen

    9 Apr 2025

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  49. WeGIA vulnerability CVE-2025-30361 detected, update systems now

    @LeBraunneZen

    9 Apr 2025

    19 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  50. CVE-2025-30361 affects WeGIA

    @LeBraunneZen

    9 Apr 2025

    15 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations