SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an insecure...
Critical severity
Unreviewed
Published
Dec 23, 2025
to the GitHub Advisory Database
•
Updated Dec 23, 2025
Description
Published by the National Vulnerability Database
Dec 22, 2025
Published to the GitHub Advisory Database
Dec 23, 2025
Last updated
Dec 23, 2025
SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an insecure direct object reference vulnerability that allows attackers to bypass authorization and access hidden system resources. Attackers can exploit the vulnerability by manipulating user-supplied input to execute privileged functionalities without proper authentication.
References